Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225871 9.3 危険 Canonical - Ubuntu 上で稼動するベースファイルパッケージにおける任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2010-0834 2012-12-20 19:28 2010-08-5 Show GitHub Exploit DB Packet Storm
225872 6.9 警告 Canonical - Ubuntu 上で稼動する PAM の pam_motd における任意のファイルのオーナーシップを変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2010-0832 2012-12-20 19:28 2010-07-7 Show GitHub Exploit DB Packet Storm
225873 7.5 危険 snowflake - TYPO3 用の T3BLOG エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0798 2012-12-20 19:28 2010-03-2 Show GitHub Exploit DB Packet Storm
225874 4.3 警告 snowflake - TYPO3 用の T3BLOG エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0797 2012-12-20 19:28 2010-03-2 Show GitHub Exploit DB Packet Storm
225875 1.9 注意 thibault godouet - fcrontab の fcron における任意のファイルを読まれる脆弱性 CWE-59
リンク解釈の問題
CVE-2010-0792 2012-12-20 19:28 2010-03-5 Show GitHub Exploit DB Packet Storm
225876 7.5 危険 SoftbizScripts - Softbiz Jobs の news_desc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0758 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
225877 6.5 警告 wikyblog - WikyBlog の index.php/Attach における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-0757 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
225878 5.8 警告 wikyblog - WikyBlog におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2010-0756 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
225879 7.5 危険 wikyblog - WikyBlog の include/WBmap.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-0755 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
225880 4.3 警告 wikyblog - WikyBlog の index.php/Special/Main/Templates におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0754 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197561 7.2 HIGH
Network
elastic
redhat
kibana
openshift_container_platform
Kibana versions before 6.8.9 and 7.7.0 contain a prototype pollution flaw in TSVB. An authenticated attacker with privileges to create TSVB visualizations could insert data that would cause Kibana to… CWE-94
Code Injection
CVE-2020-7013 2024-11-21 14:36 2020-06-4 Show GitHub Exploit DB Packet Storm
197562 8.8 HIGH
Network
elastic kibana Kibana versions 6.7.0 to 6.8.8 and 7.0.0 to 7.6.2 contain a prototype pollution flaw in the Upgrade Assistant. An authenticated attacker with privileges to write to the Kibana index could insert data… CWE-94
Code Injection
CVE-2020-7012 2024-11-21 14:36 2020-06-4 Show GitHub Exploit DB Packet Storm
197563 6.1 MEDIUM
Network
elastic elastic_app_search Elastic App Search versions before 7.7.0 contain a cross site scripting (XSS) flaw when displaying document URLs in the Reference UI. If the Reference UI injects a URL into a result, that URL will be… CWE-79
Cross-site Scripting
CVE-2020-7011 2024-11-21 14:36 2020-06-4 Show GitHub Exploit DB Packet Storm
197564 7.5 HIGH
Network
elastic elastic_cloud_on_kubernetes Elastic Cloud on Kubernetes (ECK) versions prior to 1.1.0 generate passwords using a weak random number generator. If an attacker is able to determine when the current Elastic Stack cluster was deplo… CWE-335
 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG)
CVE-2020-7010 2024-11-21 14:36 2020-06-4 Show GitHub Exploit DB Packet Storm
197565 7.2 HIGH
Network
arubanetworks clearpass_policy_manager The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated to the administrative interface, they could then … NVD-CWE-noinfo
CVE-2020-7117 2024-11-21 14:36 2020-06-3 Show GitHub Exploit DB Packet Storm
197566 7.2 HIGH
Network
arubanetworks clearpass_policy_manager The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated to the administrative interface, they could then … NVD-CWE-noinfo
CVE-2020-7116 2024-11-21 14:36 2020-06-3 Show GitHub Exploit DB Packet Storm
197567 9.8 CRITICAL
Network
arubanetworks clearpass_policy_manager The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker could then execute an exploit that would allow to rem… CWE-306
Missing Authentication for Critical Function
CVE-2020-7115 2024-11-21 14:36 2020-06-3 Show GitHub Exploit DB Packet Storm
197568 6.5 MEDIUM
Adjacent
zte f680_firmware There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connections through WEB management pages. The front-end limits the length of the WAN co… CWE-20
 Improper Input Validation 
CVE-2020-6868 2024-11-21 14:36 2020-06-1 Show GitHub Exploit DB Packet Storm
197569 7.5 HIGH
Network
mulesoft mule_runtime A Denial of Service vulnerability in MuleSoft Mule CE/EE 3.8.x, 3.9.x, and 4.x released before April 7, 2020, could allow remote attackers to submit data which can lead to resource exhaustion. NVD-CWE-noinfo
CVE-2020-6937 2024-11-21 14:36 2020-05-30 Show GitHub Exploit DB Packet Storm
197570 8.8 HIGH
Local
bosch recording_station_firmware Improper Access Control in the Kiosk Mode functionality of Bosch Recording Station allows a local unauthenticated attacker to escape from the Kiosk Mode and access the underlying operating system. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-6774 2024-11-21 14:36 2020-05-28 Show GitHub Exploit DB Packet Storm