Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226761 7.5 危険 TYPO3 Association - TYPO3 用の Codeon Petition エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3056 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226762 7.5 危険 TYPO3 Association - TYPO3 用の Support view エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3055 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226763 7.5 危険 TYPO3 Association - TYPO3 用の Branchenbuch エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3054 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226764 7.5 危険 TYPO3 Association - TYPO3 用の SQL Frontend エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3053 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226765 7.5 危険 TYPO3 Association - TYPO3 用の SQL Frontend エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-3052 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226766 7.5 危険 TYPO3 Association - TYPO3 用の Pinboard エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3051 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226767 5 警告 TYPO3 Association - TYPO3 用の PDF Generator 2 エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-3050 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226768 5 警告 TYPO3 Association - TYPO3 用の PDF Generator 2 エクステンションにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3049 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226769 7.5 危険 TYPO3 Association - TYPO3 用の PDF Generator 2 エクステンションにおける脆弱性 CWE-noinfo
情報不足
CVE-2008-3048 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226770 7.5 危険 TYPO3 Association - TYPO3 用の KB Unpack エクステンションにおける脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3047 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211111 9.8 CRITICAL
Network
twistedmatrix
fedoraproject
debian
canonical
twisted
fedora
debian_linux
ubuntu_linux
In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability. When presented with a content-length and a chunked encoding header, the content-length took precedence and the remai… CWE-444
HTTP Request Smuggling
CVE-2020-10109 2024-11-21 13:54 2020-03-12 Show GitHub Exploit DB Packet Storm
211112 9.8 CRITICAL
Network
twistedmatrix
fedoraproject
debian
canonical
oracle
twisted
fedora
debian_linux
ubuntu_linux
solaris
zfs_storage_appliance_kit
In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability. When presented with two content-length headers, it ignored the first header. When the second content-length value wa… CWE-444
HTTP Request Smuggling
CVE-2020-10108 2024-11-21 13:54 2020-03-12 Show GitHub Exploit DB Packet Storm
211113 9.8 CRITICAL
Network
sumavision enhanced_multimedia_router_firmware goform/formEMR30 in Sumavision Enhanced Multimedia Router (EMR) 3.0.4.27 allows creation of arbitrary users with elevated privileges (administrator) on a device, as demonstrated by a setString=new_us… CWE-352
 Origin Validation Error
CVE-2020-10181 2024-11-21 13:54 2020-03-12 Show GitHub Exploit DB Packet Storm
211114 6.1 MEDIUM
Network
munkireport_project munkireport An issue was discovered in Munkireport before 5.3.0.3923. An unauthenticated actor can send a custom XSS payload through the /report/broken_client endpoint. The payload will be executed by any authen… CWE-79
Cross-site Scripting
CVE-2020-10192 2024-11-21 13:54 2020-03-10 Show GitHub Exploit DB Packet Storm
211115 5.4 MEDIUM
Network
munkireport_project munkireport An issue was discovered in MunkiReport before 5.3.0. An authenticated actor can send a custom XSS payload through the /module/comment/save endpoint. The payload will be executed by any authenticated … CWE-79
Cross-site Scripting
CVE-2020-10191 2024-11-21 13:54 2020-03-10 Show GitHub Exploit DB Packet Storm
211116 8.8 HIGH
Network
munkireport_project munkireport An issue was discovered in MunkiReport before 5.3.0. An authenticated user could achieve SQL Injection in app/models/tablequery.php by crafting a special payload on the /datatables/data endpoint. CWE-89
SQL Injection
CVE-2020-10190 2024-11-21 13:54 2020-03-10 Show GitHub Exploit DB Packet Storm
211117 8.1 HIGH
Network
gonitro nitro_pro npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to JBIG2Decode CNxJBIG2DecodeStream Heap Corruption at npdf!CAPPDAnnotHandlerUtils::create_popup_for_markup+0x12fbe via a crafted PDF document. CWE-787
 Out-of-bounds Write
CVE-2020-10223 2024-11-21 13:54 2020-03-9 Show GitHub Exploit DB Packet Storm
211118 8.1 HIGH
Network
gonitro nitro_pro npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to Heap Corruption at npdf!nitro::get_property+2381 via a crafted PDF document. NVD-CWE-noinfo
CVE-2020-10222 2024-11-21 13:54 2020-03-9 Show GitHub Exploit DB Packet Storm
211119 8.8 HIGH
Network
rconfig rconfig lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the fileName POST parameter. CWE-78
OS Command 
CVE-2020-10221 2024-11-21 13:54 2020-03-9 Show GitHub Exploit DB Packet Storm
211120 9.8 CRITICAL
Network
rconfig rconfig An issue was discovered in rConfig through 3.9.4. The web interface is prone to a SQL injection via the commands.inc.php searchColumn parameter. CWE-89
SQL Injection
CVE-2020-10220 2024-11-21 13:54 2020-03-8 Show GitHub Exploit DB Packet Storm