Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226171 7.5 危険 xinha
s9y
- Serendipity で使用されている Xinha WYSIWYG エディタにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1916 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
226172 4.3 警告 tufat - FlashCard の cPlayer.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1872 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
226173 6.8 警告 レッドハット - Red Hat Linux 用の JBoss Enterprise Application Platform で使用されている jboss-seam2 における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1871 2012-12-20 19:29 2010-07-27 Show GitHub Exploit DB Packet Storm
226174 6.8 警告 realitymedias - RepairShop2 の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1857 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
226175 2.6 注意 realitymedias - RepairShop2 の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1856 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
226176 7.5 危険 phpscripte24 - Pay Per Watch & Bid Auktions System の auktion.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1855 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
226177 4.3 警告 phpscripte24 - Pay Per Watch & Bid Auktions System の auktion.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1854 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
226178 6.8 警告 Transmission Project - Transmission の libtransmission/magnet.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1853 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
226179 7.5 危険 Webkit - Qt などの製品で使用されている WebKit の websockets/WebSocketHandshake.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-1766 2012-12-20 19:29 2010-03-22 Show GitHub Exploit DB Packet Storm
226180 4.3 警告 toolsjx - Joomla! 用の Table JX コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1746 2012-12-20 19:29 2010-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213391 5.5 MEDIUM
Local
windowshello_project windowshello The WindowsHello open source library (NuGet HaemmerElectronics.SeppPenner.WindowsHello), before version 1.0.4, has a vulnerability where encrypted data could potentially be decrypted without needing … CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-11005 2024-11-21 13:56 2020-04-15 Show GitHub Exploit DB Packet Storm
213392 6.8 MEDIUM
Network
torchbox wagtail In Wagtail before versions 2.8.1 and 2.7.2, a cross-site scripting (XSS) vulnerability exists on the page revision comparison view within the Wagtail admin interface. A user with a limited-permission… - CVE-2020-11001 2024-11-21 13:56 2020-04-15 Show GitHub Exploit DB Packet Storm
213393 4.3 MEDIUM
Network
gitlab gitlab GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project. NVD-CWE-noinfo
CVE-2020-10981 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213394 9.8 CRITICAL
Network
gitlab gitlab GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogBugz integration. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-10980 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213395 4.3 MEDIUM
Network
gitlab gitlab GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users. NVD-CWE-noinfo
CVE-2020-10979 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213396 5.3 MEDIUM
Network
gitlab gitlab GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private project through Web-UI and GraphQL API. NVD-CWE-noinfo
CVE-2020-10978 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213397 8.8 HIGH
Network
dropwizard dropwizard_validation dropwizard-validation before versions 2.0.3 and 1.3.21 has a remote code execution vulnerability. A server-side template injection was identified in the self-validating feature enabling attackers to … CWE-74
Injection
CVE-2020-11002 2024-11-21 13:56 2020-04-11 Show GitHub Exploit DB Packet Storm
213398 5.5 MEDIUM
Local
gitlab gitlab GitLab EE/CE 8.5 to 12.9 is vulnerable to a an path traversal when moving an issue between projects. CWE-22
Path Traversal
CVE-2020-10977 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213399 7.5 HIGH
Network
gitlab gitlab GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when querying a merge request widget. CWE-200
Information Exposure
CVE-2020-10976 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm
213400 4.3 MEDIUM
Network
gitlab gitlab GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerabilities to unauthorized users on the vulnerability feedback page. NVD-CWE-noinfo
CVE-2020-10975 2024-11-21 13:56 2020-04-9 Show GitHub Exploit DB Packet Storm