|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 4, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228211 | 7.5 | 危険 | phpcityportal | - | PHPCityPortal における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-0974 | 2012-12-20 19:28 | 2010-03-16 | Show | GitHub Exploit DB Packet Storm |
| 228212 | 7.5 | 危険 | scripteverkauf | - | phppool media Domain Verkaus および Auktions Portal の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-0973 | 2012-12-20 19:28 | 2010-03-16 | Show | GitHub Exploit DB Packet Storm |
| 228213 | 4.3 | 警告 | yuri d'elia | - | dl Download Ticket Service の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0963 | 2012-12-20 19:28 | 2010-03-16 | Show | GitHub Exploit DB Packet Storm |
| 228214 | 6.8 | 警告 | thomas perez | - | Tribisur の modules/hayoo/index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0958 | 2012-12-20 19:28 | 2010-03-10 | Show | GitHub Exploit DB Packet Storm |
| 228215 | 6.8 | 警告 | saskia bruckner | - | Saskia's Shopsystem の content.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0957 | 2012-12-20 19:28 | 2010-03-10 | Show | GitHub Exploit DB Packet Storm |
| 228216 | 7.5 | 危険 | PreProject.com | - | Pre Projects Pre E-Learning Portal の search_result.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-0954 | 2012-12-20 19:28 | 2010-03-10 | Show | GitHub Exploit DB Packet Storm |
| 228217 | 6.8 | 警告 | phpcoin | - | phpCOIN の mod.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0953 | 2012-12-20 19:28 | 2010-03-10 | Show | GitHub Exploit DB Packet Storm |
| 228218 | 5 | 警告 | thorsten riess | - | Joomla! 用の JCollection コンポーネントにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0944 | 2012-12-20 19:28 | 2010-03-8 | Show | GitHub Exploit DB Packet Storm |
| 228219 | 4.3 | 警告 | web-site-development | - | eTek Systems Hit Counter におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0941 | 2012-12-20 19:28 | 2010-03-8 | Show | GitHub Exploit DB Packet Storm |
| 228220 | 4.3 | 警告 | sanusart | - | Simple PHP Guestbook の guestbook.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0940 | 2012-12-20 19:28 | 2010-03-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 4, 2026, 4:17 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 207821 | 9.8 |
CRITICAL
Network |
npos-tesseract_project | npos-tesseract | This affects all versions of package npos-tesseract. The injection point is located in line 55 in lib/ocr.js. |
CWE-77
Command Injection |
CVE-2020-28453 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207822 | 9.8 |
CRITICAL
Network |
image-tiler_project | image-tiler | This affects the package image-tiler before 2.0.2. |
CWE-77
Command Injection |
CVE-2020-28451 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207823 | 9.8 |
CRITICAL
Network |
heroku-env_project | heroku-env | This affects all versions of package heroku-env. The injection point is located in lib/get.js which is required by index.js. |
CWE-77
Command Injection |
CVE-2020-28437 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207824 | 9.8 |
CRITICAL
Network |
gitblame_project | gitblame | This affects all versions of package gitblame. The injection point is located in line 15 in lib/gitblame.js. |
CWE-77
Command Injection |
CVE-2020-28434 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207825 | 9.8 |
CRITICAL
Network |
node-latex-pdf_project | node-latex-pdf | This affects all versions of package node-latex-pdf. |
CWE-77
Command Injection |
CVE-2020-28433 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207826 | 9.8 |
CRITICAL
Network |
curljs_project | curljs | This affects all versions of package curljs. |
CWE-77
Command Injection |
CVE-2020-28425 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207827 | 9.8 |
CRITICAL
Network |
s3-kilatstorage_project | s3-kilatstorage | This affects all versions of package s3-kilatstorage. |
CWE-78
OS Command |
CVE-2020-28424 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207828 | 9.8 |
CRITICAL
Network |
monorepo-build_project | monorepo-build | This affects all versions of package monorepo-build. |
CWE-77
Command Injection |
CVE-2020-28423 | 2024-11-21 14:22 | 2022-08-2 | Show | GitHub Exploit DB Packet Storm |
| 207829 | 9.8 |
CRITICAL
Network |
properties-reader_project | properties-reader | This affects the package properties-reader before 2.2.0. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-28471 | 2024-11-21 14:22 | 2022-07-25 | Show | GitHub Exploit DB Packet Storm |
| 207830 | 9.8 |
CRITICAL
Network |
ion-parser_project | ion-parser | This affects all versions of package ion-parser. If an attacker submits a malicious INI file to an application that parses it with parse , they will pollute the prototype on the application. This can… |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-28462 | 2024-11-21 14:22 | 2022-07-25 | Show | GitHub Exploit DB Packet Storm |