Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227681 9.3 危険 SonicWALL - SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5814 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
227682 6.8 警告 ssreader - SSReader の Ultra Star Reader ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5807 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
227683 7.5 危険 work system e-commerce - WORK system e-commerce における脆弱性 CWE-noinfo
情報不足
CVE-2007-5801 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
227684 6.8 警告 tom willmot - WordPress 用の BackUpWordPress プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5800 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
227685 7.1 危険 stonesoft - Stonesoft StoneGate IPS におけるシステムへ侵入される脆弱性 CWE-DesignError
CVE-2007-5793 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227686 7.1 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における盗聴される脆弱性 CWE-310
暗号の問題
CVE-2007-5792 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227687 10 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における偽造された INVITE メッセージを送信される脆弱性 CWE-287
不適切な認証
CVE-2007-5791 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227688 5 警告 phptoys - Micro Login System におけるパスワードを含むファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5787 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227689 6.8 警告 sige - Sift Unity の inc/sige_init.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5781 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227690 6.8 警告 telematic lab - teatro の pub/pub08_comments.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5780 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210401 8.8 HIGH
Network
fasterxml
debian
netapp
oracle
jackson-databind
debian_linux
steelstore_cloud_integrated_storage
retail_xstore_point_of_service
primavera_unifier
retail_service_backbone
weblogic_server
retail_merchandising_sy…
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to com.caucho.config.types.ResourceRef (aka caucho-quercus). NVD-CWE-Other
CVE-2020-10673 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210402 8.8 HIGH
Network
fasterxml
debian
netapp
oracle
jackson-databind
debian_linux
steelstore_cloud_integrated_storage
retail_xstore_point_of_service
primavera_unifier
retail_service_backbone
weblogic_server
retail_merchandising_sy…
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka… NVD-CWE-Other
CVE-2020-10672 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210403 6.7 MEDIUM
Local
docker desktop Docker Desktop allows local privilege escalation to NT AUTHORITY\SYSTEM because it mishandles the collection of diagnostics with Administrator privileges, leading to arbitrary DACL permissions overwr… CWE-59
Link Following
CVE-2020-10665 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210404 4.3 MEDIUM
Network
entrustdatacard entelligence_security_provider Entrust Entelligence Security Provider (ESP) before 10.0.60 on Windows mishandles errors during SSL Certificate Validation, leading to situations where (for example) a user continues to interact with… CWE-295
Improper Certificate Validation 
CVE-2020-10659 2024-11-21 13:55 2020-03-18 Show GitHub Exploit DB Packet Storm
210405 5.4 MEDIUM
Network
opencart opencart OpenCart 3.0.3.2 allows remote authenticated users to conduct XSS attacks via a crafted filename in the users' image upload section. CWE-79
Cross-site Scripting
CVE-2020-10596 2024-11-21 13:55 2020-03-18 Show GitHub Exploit DB Packet Storm
210406 9.8 CRITICAL
Network
r-consortium rmysql RMySQL through 0.10.19 allows SQL Injection. CWE-89
SQL Injection
CVE-2020-10380 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210407 9.8 CRITICAL
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype. CWE-89
SQL Injection
CVE-2020-10243 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210408 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Inadequate handling of CSS selectors in the Protostar and Beez3 JavaScript allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-10242 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210409 8.8 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Missing token checks in the image actions of com_templates lead to CSRF. CWE-352
 Origin Validation Error
CVE-2020-10241 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210410 5.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Missing length checks in the user table can lead to the creation of users with duplicate usernames and/or email addresses. CWE-20
 Improper Input Validation 
CVE-2020-10240 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm