Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227051 6.9 警告 Canonical - Ubuntu 上で稼動する PAM の pam_motd における任意のファイルのオーナーシップを変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2010-0832 2012-12-20 19:28 2010-07-7 Show GitHub Exploit DB Packet Storm
227052 7.5 危険 snowflake - TYPO3 用の T3BLOG エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0798 2012-12-20 19:28 2010-03-2 Show GitHub Exploit DB Packet Storm
227053 4.3 警告 snowflake - TYPO3 用の T3BLOG エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0797 2012-12-20 19:28 2010-03-2 Show GitHub Exploit DB Packet Storm
227054 1.9 注意 thibault godouet - fcrontab の fcron における任意のファイルを読まれる脆弱性 CWE-59
リンク解釈の問題
CVE-2010-0792 2012-12-20 19:28 2010-03-5 Show GitHub Exploit DB Packet Storm
227055 7.5 危険 SoftbizScripts - Softbiz Jobs の news_desc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0758 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
227056 6.5 警告 wikyblog - WikyBlog の index.php/Attach における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-0757 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
227057 5.8 警告 wikyblog - WikyBlog におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2010-0756 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
227058 7.5 危険 wikyblog - WikyBlog の include/WBmap.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-0755 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
227059 4.3 警告 wikyblog - WikyBlog の index.php/Special/Main/Templates におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0754 2012-12-20 19:28 2010-02-26 Show GitHub Exploit DB Packet Storm
227060 5 警告 rafal wojtczuk - dsniff などの製品で使用されている libnids におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0751 2012-12-20 19:28 2010-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221851 6.1 MEDIUM
Network
openidc
debian
fedoraproject
opensuse
mod_auth_openidc
debian_linux
fedora
leap
A flaw was found in mod_auth_openidc before version 2.4.1. An open redirect issue exists in URLs with a slash and backslash at the beginning. CWE-601
Open Redirect
CVE-2019-20479 2024-11-21 13:38 2020-02-20 Show GitHub Exploit DB Packet Storm
221852 9.8 CRITICAL
Network
ruamel.yaml_project ruamel.yaml In ruamel.yaml through 0.16.7, the load method allows remote code execution if the application calls this method with an untrusted argument. In other words, this issue affects developers who are unaw… NVD-CWE-noinfo
CVE-2019-20478 2024-11-21 13:38 2020-02-19 Show GitHub Exploit DB Packet Storm
221853 9.8 CRITICAL
Network
pyyaml
fedoraproject
pyyaml
fedora
PyYAML 5.1 through 5.1.2 has insufficient restrictions on the load and load_all functions because of a class deserialization issue, e.g., Popen is a class in the subprocess module. NOTE: this issue e… CWE-502
 Deserialization of Untrusted Data
CVE-2019-20477 2024-11-21 13:38 2020-02-19 Show GitHub Exploit DB Packet Storm
221854 4.3 MEDIUM
Network
zohocorp manageengine_remote_access_plus An issue was discovered in Zoho ManageEngine Remote Access Plus 10.0.447. The service to test the mail-server configuration suffers from an authorization issue allowing a user with the Guest role (re… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-20474 2024-11-21 13:38 2020-02-18 Show GitHub Exploit DB Packet Storm
221855 7.8 HIGH
Local
goverlan client_agent
reach_console
reach_server
Goverlan Reach Console before 9.50, Goverlan Reach Server before 3.50, and Goverlan Client Agent before 9.20.50 have an Untrusted Search Path that leads to Command Injection and Local Privilege Escal… CWE-426
 Untrusted Search Path
CVE-2019-20456 2024-11-21 13:38 2020-02-17 Show GitHub Exploit DB Packet Storm
221856 5.9 MEDIUM
Network
globalpayments php_sdk Gateways/Gateway.php in Heartland & Global Payments PHP SDK before 2.0.0 does not enforce SSL certificate validations. CWE-295
Improper Certificate Validation 
CVE-2019-20455 2024-11-21 13:38 2020-02-15 Show GitHub Exploit DB Packet Storm
221857 7.5 HIGH
Network
pcre
fedoraproject
splunk
pcre2
fedora
universal_forwarder
An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrust… CWE-125
Out-of-bounds Read
CVE-2019-20454 2024-11-21 13:38 2020-02-14 Show GitHub Exploit DB Packet Storm
221858 4.7 MEDIUM
Network
atlassian jira
jira_server
jira_data_center
The Atlassian Application Links plugin is vulnerable to cross-site request forgery (CSRF). The following versions are affected: all versions prior to 5.4.21, from version 6.0.0 before version 6.0.12,… CWE-352
 Origin Validation Error
CVE-2019-20100 2024-11-21 13:38 2020-02-12 Show GitHub Exploit DB Packet Storm
221859 4.3 MEDIUM
Network
atlassian jira_server
jira_data_center
The VerifyPopServerConnection!add.jspa component in Atlassian Jira Server and Data Center before version 8.7.0 is vulnerable to cross-site request forgery (CSRF). An attacker could exploit this by tr… CWE-352
 Origin Validation Error
CVE-2019-20099 2024-11-21 13:38 2020-02-12 Show GitHub Exploit DB Packet Storm
221860 4.3 MEDIUM
Network
atlassian jira_server
jira_data_center
The VerifySmtpServerConnection!add.jspa component in Atlassian Jira Server and Data Center before version 8.7.0 is vulnerable to cross-site request forgery (CSRF). An attacker could exploit this by t… CWE-352
 Origin Validation Error
CVE-2019-20098 2024-11-21 13:38 2020-02-12 Show GitHub Exploit DB Packet Storm