Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225711 4.3 警告 satyadeep - Scratcher の projects.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1742 2012-12-20 19:29 2010-05-6 Show GitHub Exploit DB Packet Storm
225712 6.8 警告 Zikula Foundation - Zikula Application Framework のユーザモジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-1732 2012-12-20 19:29 2010-04-20 Show GitHub Exploit DB Packet Storm
225713 4.3 警告 Zikula Foundation - Zikula Application Framework におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1724 2012-12-20 19:29 2010-04-20 Show GitHub Exploit DB Packet Storm
225714 7.5 危険 TheThinkery LLC - Joomla! 用の Intellectual Property コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1721 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225715 7.5 危険 qproje - Joomla! 用の qpersonel コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1720 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225716 6.8 警告 dev.pucit.edu.pk - Joomla! 用の Online Examination コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1715 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225717 7.5 危険 postnuke - PostNuke の modules.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1713 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225718 4.3 警告 webmobo - Webmobo WB News の base/Comments.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1712 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225719 4.3 警告 ramoncastro - Siestta の carga_foto_al.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1711 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
225720 6.8 警告 ramoncastro - Siestta の login.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1710 2012-12-20 19:29 2010-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197821 8.8 HIGH
Network
mz-automation libiec61850 MmsValue_decodeMmsData in mms/iso_mms/server/mms_access_result.c in libIEC61850 through 1.4.0 has a heap-based buffer overflow when parsing the MMS_BIT_STRING data type. CWE-787
 Out-of-bounds Write
CVE-2020-7054 2024-11-21 14:36 2020-01-15 Show GitHub Exploit DB Packet Storm
197822 7.8 HIGH
Local
linux linux_kernel In the Linux kernel 4.14 longterm through 4.14.165 and 4.19 longterm through 4.19.96 (and 5.x before 5.2), there is a use-after-free (write) in the i915_ppgtt_close function in drivers/gpu/drm/i915/i… CWE-416
 Use After Free
CVE-2020-7053 2024-11-21 14:36 2020-01-15 Show GitHub Exploit DB Packet Storm
197823 9.1 CRITICAL
Network
yet_another_java_service_wrapper_project yet_another_java_service_wrapper An XXE vulnerability in JnlpSupport in Yet Another Java Service Wrapper (YAJSW) 12.14, as used in NSA Ghidra and other products, allows attackers to exfiltrate data from remote hosts and potentially … CWE-611
XXE
CVE-2020-6958 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197824 6.1 MEDIUM
Network
cayintech smp-pro4_firmware An issue was discovered on Cayin SMP-PRO4 devices. They allow image_preview.html?filename= reflected XSS. CWE-79
Cross-site Scripting
CVE-2020-6955 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197825 6.5 MEDIUM
Network
cayintech smp-pro4_firmware An issue was discovered on Cayin SMP-PRO4 devices. A user can discover a saved password by viewing the URL after a Connection String Test. This password is shown in the webpass parameter of a media_f… CWE-200
Information Exposure
CVE-2020-6954 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197826 5.3 MEDIUM
Network
gitlab gitlab An issue was discovered in GitLab Enterprise Edition (EE) 8.9.0 through 12.6.1. Using the project import feature, it was possible for someone to obtain issues from private projects. NVD-CWE-noinfo
CVE-2020-6832 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197827 8.8 HIGH
Network
hashbrowncms hashbrown_cms A privilege escalation issue was discovered in the postUser function in HashBrown CMS through 1.3.3. An editor user can change the password hash of an admin user's account, or otherwise reconfigure t… CWE-269
 Improper Privilege Management
CVE-2020-6949 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197828 9.8 CRITICAL
Network
hashbrowncms hashbrown_cms A remote code execution issue was discovered in HashBrown CMS through 1.3.3. Server/Entity/Deployer/GitDeployer.js has a Service.AppService.exec call that mishandles the URL, repository, username, an… CWE-78
OS Command 
CVE-2020-6948 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197829 5.3 MEDIUM
Network
ultimatemember ultimate_member Multiple Insecure Direct Object Reference vulnerabilities in includes/core/class-files.php in the Ultimate Member plugin through 2.1.2 for WordPress allow remote attackers to change other users' prof… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-6859 2024-11-21 14:36 2020-01-14 Show GitHub Exploit DB Packet Storm
197830 8.8 HIGH
Network
symonics
fedoraproject
libmysofa
fedora
libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header message attribute. CWE-787
 Out-of-bounds Write
CVE-2020-6860 2024-11-21 14:36 2020-01-13 Show GitHub Exploit DB Packet Storm