Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225751 4.3 警告 WampServer - WampServer の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0700 2012-12-20 19:28 2010-02-23 Show GitHub Exploit DB Packet Storm
225752 4.3 警告 videosearchscript - VideoSearchScript Pro の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0699 2012-12-20 19:28 2010-02-23 Show GitHub Exploit DB Packet Storm
225753 6 警告 TIBCO Software - TIBCO Administrator の TIBRepoServer5.jar における全ドメインノード上で任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-0683 2012-12-20 19:28 2010-02-25 Show GitHub Exploit DB Packet Storm
225754 4 警告 WordPress.org - WordPress における他の作成者にゴミ箱の中の投稿を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0682 2012-12-20 19:28 2010-02-15 Show GitHub Exploit DB Packet Storm
225755 5 警告 zeuscms - ZeusCMS における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0681 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
225756 7.5 危険 zeuscms - ZeusCMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0680 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
225757 5 警告 weberr - Joomla! 用の RWCards コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0676 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
225758 7.5 危険 webmastersite - WSN Guest の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0672 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
225759 5 警告 xs4all - JAG における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0665 2012-12-20 19:28 2010-02-19 Show GitHub Exploit DB Packet Storm
225760 7.5 危険 flex project - Fast Lexical Analyzer Generator における脆弱性 CWE-noinfo
情報不足
CVE-2010-0634 2012-12-20 19:28 2010-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211691 6.1 MEDIUM
Network
gtranslate translate_wordpress_with_gtranslate The GTranslate plugin before 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature within a sub-domain or sub-directory paid option. CWE-79
Cross-site Scripting
CVE-2020-11930 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
211692 9.8 CRITICAL
Network
davidlingren media_library_assistant In the media-library-assistant plugin before 2.82 for WordPress, Remote Code Execution can occur via the tax_query, meta_query, or date_query parameter in mla_gallery via an admin. NVD-CWE-noinfo
CVE-2020-11928 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
211693 9.1 CRITICAL
Network
libming libming Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c. CWE-125
Out-of-bounds Read
CVE-2020-11895 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
211694 9.1 CRITICAL
Network
libming libming Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c. CWE-125
Out-of-bounds Read
CVE-2020-11894 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
211695 6.1 MEDIUM
Network
svg2png_project svg2png svg2png 4.1.1 allows XSS with resultant SSRF via JavaScript inside an SVG document. CWE-79
Cross-site Scripting
CVE-2020-11887 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
211696 8.1 HIGH
Network
opennms horizon
meridian
OpenNMS Horizon and Meridian allows HQL Injection in element/nodeList.htm (aka the NodeListController) via snmpParm or snmpParmValue to addCriteriaForSnmpParm. This affects Horizon before 25.2.1, Mer… CWE-89
SQL Injection
CVE-2020-11886 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
211697 7.2 HIGH
Network
wso2 enterprise_integrator WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploade… CWE-611
CWE-918
XXE
Server-Side Request Forgery (SSRF) 
CVE-2020-11885 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
211698 5.3 MEDIUM
Network
divante storefront-api
vue-storefront-api
In Divante vue-storefront-api through 1.11.1 and storefront-api through 1.0-rc.1, as used in VueStorefront PWA, unexpected HTTP requests lead to an exception that discloses the error stack trace, wit… CWE-209
Information Exposure Through an Error Message
CVE-2020-11883 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
211699 6.5 MEDIUM
Network
kde kmail An issue was discovered in KDE KMail before 19.12.3. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make KMail attach local file… NVD-CWE-Other
CVE-2020-11880 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
211700 6.5 MEDIUM
Network
gnome evolution An issue was discovered in GNOME Evolution before 3.35.91. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make Evolution attach … NVD-CWE-Other
CVE-2020-11879 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm