Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227621 7.5 危険 wildbit - beanstalkd の put command 機能における任意の Beanstalk コマンドを実行される脆弱性 CWE-Other
その他
CVE-2010-2060 2012-12-20 19:29 2010-06-7 Show GitHub Exploit DB Packet Storm
227622 2.1 注意 prelude-technologies - Prewikka の setup.py における SQL データベースパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2058 2012-12-20 19:29 2010-06-7 Show GitHub Exploit DB Packet Storm
227623 10 危険 Standards Based Linux Instrumentation (SBLIM) - SBLIM SFCB の httpAdapter における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-2054 2012-12-20 19:29 2010-05-14 Show GitHub Exploit DB Packet Storm
227624 7.5 危険 shopex - ECShop の search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2042 2012-12-20 19:29 2010-05-25 Show GitHub Exploit DB Packet Storm
227625 4.3 警告 php-calendar project - PHP-Calendar の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2041 2012-12-20 19:29 2010-05-25 Show GitHub Exploit DB Packet Storm
227626 4.3 警告 V-EVA - V-EVA Shopzilla Affiliate Script PHP の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2040 2012-12-20 19:29 2010-05-25 Show GitHub Exploit DB Packet Storm
227627 1.9 注意 wolfram research - Mathematica における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2010-2027 2012-12-20 19:29 2010-05-24 Show GitHub Exploit DB Packet Storm
227628 6.8 警告 sebrac.webcindario - MigasCMS の function.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2012 2012-12-20 19:29 2010-05-24 Show GitHub Exploit DB Packet Storm
227629 4.3 警告 proxy2 - Advanced Poll の misc/get_admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2003 2012-12-20 19:29 2010-05-20 Show GitHub Exploit DB Packet Storm
227630 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2000 2012-12-20 19:29 2010-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215401 9.8 CRITICAL
Network
octobercms debugbar The October CMS debugbar plugin before version 3.1.0 contains a feature where it will log all requests (and all information pertaining to each request including session data) whenever it is enabled. … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-11094 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
215402 5.8 MEDIUM
Network
weave weave_net In Weave Net before version 2.6.3, an attacker able to run a process as root in a container is able to respond to DNS requests from the host and thereby insert themselves as a fake service. In a clus… - CVE-2020-11091 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
215403 7.5 HIGH
Network
nghttp2
debian
opensuse
fedoraproject
oracle
nodejs
nghttp2
debian_linux
leap
fedora
enterprise_communications_broker
graalvm
mysql
blockchain_platform
banking_extensibility_workbench
node.js
In nghttp2 before version 1.41.0, the overly large HTTP/2 SETTINGS frame payload causes denial of service. The proof of concept attack involves a malicious client constructing a SETTINGS frame with a… - CVE-2020-11080 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
215404 6.1 MEDIUM
Network
mediawiki mediawiki resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page. CWE-601
Open Redirect
CVE-2020-10959 2024-11-21 13:56 2020-06-2 Show GitHub Exploit DB Packet Storm
215405 5.5 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp_create, drive_process_irp_write, printer_process_irp_write, rdpei_recv_pdu, se… - CVE-2020-11089 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
215406 5.4 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0. - CVE-2020-11088 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
215407 5.4 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. This has been fixed in 2.1.0. - CVE-2020-11087 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
215408 5.4 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads up to 28 bytes out-of-bound to an internal structure. This has been fixed in 2.1… - CVE-2020-11086 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
215409 3.5 LOW
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP before 2.1.0, there is an out-of-bounds read in cliprdr_read_format_list. Clipboard format data read (by client or server) might read data out-of-bounds. This has been fixed in 2.1.0. - CVE-2020-11085 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
215410 2.7 LOW
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, there is an out-of-bounds read in rfx_process_message_tileset. Invalid data fed to RFX decoder results in garbage on screen (as colors). This has been patched … - CVE-2020-11043 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm