Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227831 7.5 危険 Uiga - Uiga Fan Club の admin/admin_login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1366 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227832 7.5 危険 Uiga - Uiga Fan Club の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1365 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227833 7.5 危険 Uiga - Uiga Personal Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1364 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227834 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1358 2012-12-20 19:29 2010-01-13 Show GitHub Exploit DB Packet Storm
227835 4.3 警告 sbddirectorysoftware - SBD Directory Software の editors/logindialogue.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1357 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227836 10 危険 vsecurity - TANDBERG VCS における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-1356 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227837 4.3 警告 vsecurity - TANDBERG VCS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1355 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227838 5 警告 ternaria - Joomla! 用の vjdeo コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1354 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
227839 5 警告 wowjoomla - Joomla! 用の loginbox コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1353 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
227840 6.8 警告 ribafs - Mini CMS RibaFS の admin/login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1346 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221031 5.9 MEDIUM
Network
f5 big-ip_access_policy_manager
big-ip_local_traffic_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_application_security_manager
big-ip_domain_name_system
big-ip_edge…
On BIG-IP 11.5.1-11.5.4, 11.6.1, and 12.1.0, a virtual server configured with a Client SSL profile may be vulnerable to a chosen ciphertext attack against CBC ciphers. When exploited, this may result… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-6593 2024-11-21 13:46 2019-02-27 Show GitHub Exploit DB Packet Storm
221032 9.1 CRITICAL
Network
f5 big-ip_access_policy_manager
big-ip_local_traffic_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_application_security_manager
big-ip_domain_name_system
big-ip_edge…
On BIG-IP 14.1.0-14.1.0.1, TMM may restart and produce a core file when validating SSL certificates in client SSL or server SSL profiles. CWE-295
Improper Certificate Validation 
CVE-2019-6592 2024-11-21 13:46 2019-02-27 Show GitHub Exploit DB Packet Storm
221033 9.8 CRITICAL
Network
cordaware bestinformed Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encr… CWE-295
Improper Certificate Validation 
CVE-2019-6266 2024-11-21 13:46 2019-02-26 Show GitHub Exploit DB Packet Storm
221034 7.8 HIGH
Local
cordaware bestinformed The Scripting and AutoUpdate functionality in Cordaware bestinformed Microsoft Windows client versions before 6.2.1.0 are affected by insecure implementations which allow remote attackers to execute … NVD-CWE-noinfo
CVE-2019-6265 2024-11-21 13:46 2019-02-26 Show GitHub Exploit DB Packet Storm
221035 5.9 MEDIUM
Network
citrix netscaler_gateway_firmware
netscaler_application_delivery_controller_firmware
Citrix NetScaler Gateway 12.1 before build 50.31, 12.0 before build 60.9, 11.1 before build 60.14, 11.0 before build 72.17, and 10.5 before build 69.5 and Application Delivery Controller (ADC) 12.1 b… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-6485 2024-11-21 13:46 2019-02-23 Show GitHub Exploit DB Packet Storm
221036 8.1 HIGH
Network
drupal drupal Some field types do not properly sanitize data from non-form sources in Drupal 8.5.x before 8.5.11 and Drupal 8.6.x before 8.6.10. This can lead to arbitrary PHP code execution in some cases. A site … CWE-502
 Deserialization of Untrusted Data
CVE-2019-6340 2024-11-21 13:46 2019-02-22 Show GitHub Exploit DB Packet Storm
221037 8.1 HIGH
Network
mirc mirc mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC … CWE-88
Argument Injection
CVE-2019-6453 2024-11-21 13:46 2019-02-19 Show GitHub Exploit DB Packet Storm
221038 6.1 MEDIUM
Network
f5 big-ip_local_traffic_manager
big-ip_application_acceleration_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_access_policy_manager
big-ip_application_security_manager<…
On BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.1.3, 12.1.0-12.1.3.7, and 11.6.0-11.6.3.2, a reflected Cross Site Scripting (XSS) vulnerability is present in an undisclosed page of the BIG-IP TMUI (Traffic Ma… CWE-79
Cross-site Scripting
CVE-2019-6589 2024-11-21 13:46 2019-02-14 Show GitHub Exploit DB Packet Storm
221039 7.5 HIGH
Network
aveva indusoft_web_studio
intouch_machine_edition_2014
AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a speci… NVD-CWE-Other
CVE-2019-6545 2024-11-21 13:46 2019-02-13 Show GitHub Exploit DB Packet Storm
221040 9.8 CRITICAL
Network
aveva indusoft_web_studio
intouch_machine_edition_2014
AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. Code is executed under the program runtime privi… CWE-306
Missing Authentication for Critical Function
CVE-2019-6543 2024-11-21 13:46 2019-02-13 Show GitHub Exploit DB Packet Storm