Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227201 7.5 危険 Symphony CMS - Symphony CMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2143 2012-12-20 19:29 2010-06-3 Show GitHub Exploit DB Packet Storm
227202 7.5 危険 snipegallery - Snipe Gallery における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2126 2012-12-20 19:29 2010-06-1 Show GitHub Exploit DB Packet Storm
227203 2.1 注意 systemseed - Drupal 用の Rotor Banner モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2125 2012-12-20 19:29 2010-05-20 Show GitHub Exploit DB Packet Storm
227204 2.1 注意 speedtech - Drupal 用の Storm モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2123 2012-12-20 19:29 2010-05-19 Show GitHub Exploit DB Packet Storm
227205 5 警告 SolarWinds - SolarWinds TFTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2115 2012-12-20 19:29 2010-05-28 Show GitHub Exploit DB Packet Storm
227206 3.5 注意 uniformserver - The Uniform Server におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2113 2012-12-20 19:29 2010-05-28 Show GitHub Exploit DB Packet Storm
227207 10 危険 timo gaik - Webby Webserver におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2102 2012-12-20 19:29 2010-05-27 Show GitHub Exploit DB Packet Storm
227208 7.5 危険 UnrealIRCd - UnrealIRCd における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-2075 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
227209 5 警告 radovan garabik - Pyftpd の auth_db_config.py における FTP サーバから任意のファイルを読まれる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-2073 2012-12-20 19:29 2010-06-13 Show GitHub Exploit DB Packet Storm
227210 3.6 注意 radovan garabik - Pyftpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2010-2072 2012-12-20 19:29 2010-06-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221561 7.5 HIGH
Network
sage sage_frp_1000 A path traversal vulnerability exists in Sage FRP 1000 before November 2019. This allows remote unauthenticated attackers to access files outside of the web tree via a crafted URL. CWE-22
Path Traversal
CVE-2019-25053 2024-11-21 13:39 2023-01-28 Show GitHub Exploit DB Packet Storm
221562 5.3 MEDIUM
Network
afkmods qsf-portal A vulnerability classified as critical was found in Arthmoor QSF-Portal. This vulnerability affects unknown code of the file index.php. The manipulation of the argument a leads to path traversal. The… CWE-22
Path Traversal
CVE-2019-25099 2024-11-21 13:39 2023-01-6 Show GitHub Exploit DB Packet Storm
221563 7.5 HIGH
Network
goa.design goa Improper path sanitization in github.com/goadesign/goa before v3.0.9, v2.0.10, or v1.4.3 allow remote attackers to read files outside of the intended directory. CWE-22
Path Traversal
CVE-2019-25073 2024-11-21 13:39 2022-12-28 Show GitHub Exploit DB Packet Storm
221564 5.4 MEDIUM
Network
oxidized_web_project oxidized_web A vulnerability was found in ytti Oxidized Web. It has been classified as problematic. Affected is an unknown function of the file lib/oxidized/web/views/conf_search.haml. The manipulation of the arg… - CVE-2019-25088 2024-11-21 13:39 2022-12-27 Show GitHub Exploit DB Packet Storm
221565 4.3 MEDIUM
Network
ethex ethex_contracts A vulnerability was found in Ethex Contracts. It has been classified as critical. This affects an unknown part of the file EthexJackpot.sol of the component Monthly Jackpot Handler. The manipulation … - CVE-2019-25157 2024-11-21 13:39 2023-12-19 Show GitHub Exploit DB Packet Storm
221566 6.1 MEDIUM
Network
dstar2018 agency A vulnerability classified as problematic was found in dstar2018 Agency up to 61. Affected by this vulnerability is an unknown functionality of the file search.php. The manipulation of the argument Q… - CVE-2019-25156 2024-11-21 13:39 2023-11-7 Show GitHub Exploit DB Packet Storm
221567 6.1 MEDIUM
Network
cure53 dompurify DOMPurify before 1.0.11 allows reverse tabnabbing in demos/hooks-target-blank-demo.html because links lack a 'rel="noopener noreferrer"' attribute. CWE-601
Open Redirect
CVE-2019-25155 2024-11-21 13:39 2023-11-7 Show GitHub Exploit DB Packet Storm
221568 10.0 CRITICAL
Network
mozilla firefox A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70. NVD-CWE-noinfo
CVE-2019-25136 2024-11-21 13:39 2023-06-19 Show GitHub Exploit DB Packet Storm
221569 7.2 HIGH
Network
umbraco umbraco_cms Umbraco CMS 4.11.8 through 7.15.10, and 7.12.4, allows Remote Code Execution by authenticated administrators via msxsl:script in an xsltSelection to developer/Xslt/xsltVisualize.aspx. CWE-91
Blind XPath Injection
CVE-2019-25137 2024-11-21 13:39 2023-05-18 Show GitHub Exploit DB Packet Storm
221570 6.1 MEDIUM
Network
dro.pm_project dro.pm A vulnerability, which was classified as problematic, was found in dro.pm. This affects an unknown part of the file web/fileman.php. The manipulation of the argument secret/key leads to cross site sc… CWE-79
Cross-site Scripting
CVE-2019-25105 2024-11-21 13:39 2023-02-26 Show GitHub Exploit DB Packet Storm