Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227231 10 危険 Standards Based Linux Instrumentation (SBLIM) - SBLIM SFCB の httpAdapter におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1937 2012-12-20 19:29 2010-05-14 Show GitHub Exploit DB Packet Storm
227232 9.3 危険 XnSoft - XnView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1932 2012-12-20 19:29 2010-06-16 Show GitHub Exploit DB Packet Storm
227233 7.5 危険 rifat kurban - tekno.Portal の makale.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1925 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
227234 7.5 危険 phpscripte24 - Hi Web Wiesbaden Live Shopping Multi Portal System の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1924 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
227235 7.5 危険 phpscripte24 - Hi Web Wiesbaden Web Social Network Freunde Community System の user.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1923 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
227236 7.5 危険 xinha
s9y
- Serendipity で使用されている Xinha WYSIWYG エディタにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1916 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
227237 4.3 警告 tufat - FlashCard の cPlayer.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1872 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
227238 6.8 警告 レッドハット - Red Hat Linux 用の JBoss Enterprise Application Platform で使用されている jboss-seam2 における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1871 2012-12-20 19:29 2010-07-27 Show GitHub Exploit DB Packet Storm
227239 6.8 警告 realitymedias - RepairShop2 の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1857 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
227240 2.6 注意 realitymedias - RepairShop2 の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1856 2012-12-20 19:29 2010-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221561 7.5 HIGH
Network
sage sage_frp_1000 A path traversal vulnerability exists in Sage FRP 1000 before November 2019. This allows remote unauthenticated attackers to access files outside of the web tree via a crafted URL. CWE-22
Path Traversal
CVE-2019-25053 2024-11-21 13:39 2023-01-28 Show GitHub Exploit DB Packet Storm
221562 5.3 MEDIUM
Network
afkmods qsf-portal A vulnerability classified as critical was found in Arthmoor QSF-Portal. This vulnerability affects unknown code of the file index.php. The manipulation of the argument a leads to path traversal. The… CWE-22
Path Traversal
CVE-2019-25099 2024-11-21 13:39 2023-01-6 Show GitHub Exploit DB Packet Storm
221563 7.5 HIGH
Network
goa.design goa Improper path sanitization in github.com/goadesign/goa before v3.0.9, v2.0.10, or v1.4.3 allow remote attackers to read files outside of the intended directory. CWE-22
Path Traversal
CVE-2019-25073 2024-11-21 13:39 2022-12-28 Show GitHub Exploit DB Packet Storm
221564 5.4 MEDIUM
Network
oxidized_web_project oxidized_web A vulnerability was found in ytti Oxidized Web. It has been classified as problematic. Affected is an unknown function of the file lib/oxidized/web/views/conf_search.haml. The manipulation of the arg… - CVE-2019-25088 2024-11-21 13:39 2022-12-27 Show GitHub Exploit DB Packet Storm
221565 4.3 MEDIUM
Network
ethex ethex_contracts A vulnerability was found in Ethex Contracts. It has been classified as critical. This affects an unknown part of the file EthexJackpot.sol of the component Monthly Jackpot Handler. The manipulation … - CVE-2019-25157 2024-11-21 13:39 2023-12-19 Show GitHub Exploit DB Packet Storm
221566 6.1 MEDIUM
Network
dstar2018 agency A vulnerability classified as problematic was found in dstar2018 Agency up to 61. Affected by this vulnerability is an unknown functionality of the file search.php. The manipulation of the argument Q… - CVE-2019-25156 2024-11-21 13:39 2023-11-7 Show GitHub Exploit DB Packet Storm
221567 6.1 MEDIUM
Network
cure53 dompurify DOMPurify before 1.0.11 allows reverse tabnabbing in demos/hooks-target-blank-demo.html because links lack a 'rel="noopener noreferrer"' attribute. CWE-601
Open Redirect
CVE-2019-25155 2024-11-21 13:39 2023-11-7 Show GitHub Exploit DB Packet Storm
221568 10.0 CRITICAL
Network
mozilla firefox A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70. NVD-CWE-noinfo
CVE-2019-25136 2024-11-21 13:39 2023-06-19 Show GitHub Exploit DB Packet Storm
221569 7.2 HIGH
Network
umbraco umbraco_cms Umbraco CMS 4.11.8 through 7.15.10, and 7.12.4, allows Remote Code Execution by authenticated administrators via msxsl:script in an xsltSelection to developer/Xslt/xsltVisualize.aspx. CWE-91
Blind XPath Injection
CVE-2019-25137 2024-11-21 13:39 2023-05-18 Show GitHub Exploit DB Packet Storm
221570 6.1 MEDIUM
Network
dro.pm_project dro.pm A vulnerability, which was classified as problematic, was found in dro.pm. This affects an unknown part of the file web/fileman.php. The manipulation of the argument secret/key leads to cross site sc… CWE-79
Cross-site Scripting
CVE-2019-25105 2024-11-21 13:39 2023-02-26 Show GitHub Exploit DB Packet Storm