Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226921 7.5 危険 prasanna - Joomla! 用の YouTube コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2923 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226922 7.5 危険 visocrea - Joomla! 用の Visites コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2918 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226923 7.5 危険 toughtomato - Joomla! 用の TTVideo コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2909 2012-12-20 19:29 2010-07-28 Show GitHub Exploit DB Packet Storm
226924 4.3 警告 SAP - SAP NetWeaver の SLD コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2904 2012-12-20 19:29 2010-07-28 Show GitHub Exploit DB Packet Storm
226925 2.6 注意 runcms - RunCMS の modules/headlines/magpierss/scripts/magpie_debug.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2852 2012-12-20 19:29 2010-07-24 Show GitHub Exploit DB Packet Storm
226926 7.5 危険 schlu.net - Joomla! 用の QuickFAQ コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2845 2012-12-20 19:29 2010-07-24 Show GitHub Exploit DB Packet Storm
226927 5 警告 SquirrelMail Project - SquirrelMail の functions/imap_general.php におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-2813 2012-12-20 19:29 2010-08-19 Show GitHub Exploit DB Packet Storm
226928 5 警告 ZNC - ZNC の Client.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2812 2012-12-20 19:29 2010-08-3 Show GitHub Exploit DB Packet Storm
226929 5.7 警告 レッドハット - RHEV の VDSM におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-2811 2012-12-20 19:29 2010-08-19 Show GitHub Exploit DB Packet Storm
226930 6.8 警告 uzbl - Uzbl の バインディングのデフォルト設定における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-2809 2012-12-20 19:29 2010-08-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3131 - - - LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.81.16 to before version 1.83.7, a database query used during proxy API key checks mixed the caller… CWE-89
SQL Injection
CVE-2026-42208 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3132 6.3 MEDIUM
Network
- - Bitrix24 through 25.100.300 allows Remote Code Execution because an actor with SOURCE/WRITE permissions for the Translate Module can upload and execute code by sending a PHP file and a .htaccess file… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2025-67886 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3133 7.3 HIGH
Network
- - A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti before 2.1.12 allows attackers to execute code on the application server. CWE-94
Code Injection
CVE-2024-46507 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3134 7.3 HIGH
Network
- - A Command Injection issue in the payload build page in BYOB (Build Your Own Botnet) 2.0 allows attackers to execute arbitrary commands on the server via a crafted build parameter. This occurs in free… CWE-77
Command Injection
CVE-2024-45257 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3135 6.3 MEDIUM
Network
- - SOPlanning 1.52.00 is vulnerable to SQL Injection by an authenticated user via projets.php with statut[]. CWE-89
SQL Injection
CVE-2024-33722 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3136 7.3 HIGH
Network
- - Prison Management System Using PHP v1.0 was discovered to contain a SQL injection vulnerability via the username on the Admin login page. CWE-89
SQL Injection
CVE-2024-33288 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3137 - - - Apache::Session versions through 1.94 for Perl re-creates deleted sessions. The session stores Apache::Session::Store::File and Apache::Session::Store::DB_File will create a session that does not ex… CWE-672
 Operation on a Resource after Expiration or Release
CVE-2013-10075 2026-05-9 03:16 2026-05-8 Show GitHub Exploit DB Packet Storm
3138 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject immediate NF_QUEUE verdict nft_queue is always used from userspace nftables to deliver the NF_QUEUE … NVD-CWE-noinfo
CVE-2026-43024 2026-05-9 03:15 2026-05-2 Show GitHub Exploit DB Packet Storm
3139 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: gpib: lpvo_usb: fix memory leak on disconnect The driver iterates over the registered USB interfaces during GPIB attach and takes… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-31760 2026-05-9 03:11 2026-05-2 Show GitHub Exploit DB Packet Storm
3140 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iio: gyro: mpu3050: Move iio_device_register() to correct location iio_device_register() should be at the end of the probe functi… CWE-362
Race Condition
CVE-2026-31761 2026-05-9 03:11 2026-05-2 Show GitHub Exploit DB Packet Storm