Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226111 4.3 警告 Sourcefire - Sourcefire 3D Sensor 1000 などのデフォルトインストールにおける SSL トラフィックを解読される脆弱性 CWE-16
環境設定
CVE-2010-2306 2012-12-20 19:29 2010-06-16 Show GitHub Exploit DB Packet Storm
226112 9.3 危険 シマンテック - Symantec Sygate Personal Firewall 用の SSHelper.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2305 2012-12-20 19:29 2010-06-16 Show GitHub Exploit DB Packet Storm
226113 6.8 警告 pxsystem - Plume CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2294 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
226114 3.3 注意 snom - snom VoIP Phone の Web インターフェースにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2291 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
226115 3.3 注意 Wireshark - IPMI dissector の SMB PIPE 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-2285 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
226116 5.1 警告 tomatocms - TomatoCMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2282 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
226117 4.3 警告 tomatocms - TomatoCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2281 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
226118 7.5 危険 Tamlyn Creative Pty - Joomla! 用の bfsurvey コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2259 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
226119 7.5 危険 Tamlyn Creative Pty - Joomla! 用の bfsurvey_pro コンポーネントなどにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2255 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
226120 7.5 危険 shape5 - Joomla! 用の Shape5 Bridge of Hope template における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2254 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210961 6.1 MEDIUM
Network
drupal entity_embed The Entity Embed module provides a filter to allow embedding entities in content fields. In certain circumstances, the filter could allow an unprivileged user to inject HTML into a page when it is ac… CWE-79
Cross-site Scripting
CVE-2020-13673 2024-11-21 14:01 2022-02-12 Show GitHub Exploit DB Packet Storm
210962 6.1 MEDIUM
Network
drupal drupal Cross-site Scripting (XSS) vulnerability in Drupal core's sanitization API fails to properly filter cross-site scripting under certain circumstances. This issue affects: Drupal Core 9.1.x versions pr… CWE-79
Cross-site Scripting
CVE-2020-13672 2024-11-21 14:01 2022-02-12 Show GitHub Exploit DB Packet Storm
210963 7.5 HIGH
Network
drupal drupal Information Disclosure vulnerability in file module of Drupal Core allows an attacker to gain access to the file metadata of a permanent private file that they do not have access to by guessing the I… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-13670 2024-11-21 14:01 2022-02-12 Show GitHub Exploit DB Packet Storm
210964 6.1 MEDIUM
Network
drupal drupal Cross-site Scripting (XSS) vulnerability in ckeditor of Drupal Core allows attacker to inject XSS. This issue affects: Drupal Core 8.8.x versions prior to 8.8.10.; 8.9.x versions prior to 8.9.6; 9.0.… CWE-79
Cross-site Scripting
CVE-2020-13669 2024-11-21 14:01 2022-02-12 Show GitHub Exploit DB Packet Storm
210965 6.1 MEDIUM
Network
drupal drupal Access Bypass vulnerability in Drupal Core allows for an attacker to leverage the way that HTML is rendered for affected forms in order to exploit the vulnerability. This issue affects: Drupal Core 8… CWE-79
Cross-site Scripting
CVE-2020-13668 2024-11-21 14:01 2022-02-12 Show GitHub Exploit DB Packet Storm
210966 6.1 MEDIUM
Network
outsystems lifetime_management_console
platform_server
outsystems
A stored XSS vulnerability was discovered in the ECT Provider in OutSystems before 2020-09-04, affecting generated applications. It could allow an unauthenticated remote attacker to craft and store m… CWE-79
Cross-site Scripting
CVE-2020-13639 2024-11-21 14:01 2021-08-31 Show GitHub Exploit DB Packet Storm
210967 8.8 HIGH
Network
rukovoditel rukovoditel An exploitable SQL injection vulnerability exists in the ‘entities/fields’ page of the Rukovoditel Project Management App 2.7.2. The entities_id parameter in the 'entities/fields page (mulitple_edit … CWE-89
SQL Injection
CVE-2020-13589 2024-11-21 14:01 2021-08-18 Show GitHub Exploit DB Packet Storm
210968 8.8 HIGH
Network
rukovoditel rukovoditel An exploitable SQL injection vulnerability exists in the ‘entities/fields’ page of the Rukovoditel Project Management App 2.7.2. The heading_field_id parameter in ‘‘entities/fields’ page is vulnerabl… CWE-89
SQL Injection
CVE-2020-13588 2024-11-21 14:01 2021-08-18 Show GitHub Exploit DB Packet Storm
210969 8.8 HIGH
Network
drupal drupal Cross Site Request Forgery vulnerability in Drupal Core Form API does not properly handle certain form input from cross-site requests, which can lead to other vulnerabilities. CWE-352
 Origin Validation Error
CVE-2020-13663 2024-11-21 14:01 2021-06-12 Show GitHub Exploit DB Packet Storm
210970 6.1 MEDIUM
Network
drupal drupal Cross-site scripting vulnerability in l Drupal Core allows an attacker could leverage the way that HTML is rendered for affected forms in order to exploit the vulnerability. This issue affects: Drupa… CWE-79
Cross-site Scripting
CVE-2020-13688 2024-11-21 14:01 2021-06-12 Show GitHub Exploit DB Packet Storm