Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228421 7.5 危険 webmastersite - WSN Guest の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0672 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
228422 5 警告 xs4all - JAG における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0665 2012-12-20 19:28 2010-02-19 Show GitHub Exploit DB Packet Storm
228423 7.5 危険 flex project - Fast Lexical Analyzer Generator における脆弱性 CWE-noinfo
情報不足
CVE-2010-0634 2012-12-20 19:28 2010-02-12 Show GitHub Exploit DB Packet Storm
228424 7.5 危険 webguerilla - Joomla! 用の Photoblog コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0610 2012-12-20 19:28 2010-02-11 Show GitHub Exploit DB Packet Storm
228425 4.3 警告 sterlitetechnologies - Sterlite SAM300 AX Router の Forms/status_statistics_1 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0607 2012-12-20 19:28 2010-02-11 Show GitHub Exploit DB Packet Storm
228426 7.5 危険 サン・マイクロシステムズ - Oracle OpenSolaris のデフォルト設定における脆弱性 CWE-16
環境設定
CVE-2010-0559 2012-12-20 19:28 2010-01-25 Show GitHub Exploit DB Packet Storm
228427 7.5 危険 サン・マイクロシステムズ - Oracle OpenSolaris のデフォルト設定における脆弱性 CWE-16
環境設定
CVE-2010-0558 2012-12-20 19:28 2010-01-25 Show GitHub Exploit DB Packet Storm
228428 5 警告 Xerox - Xerox WorkCentre 6400 System Software および Net Controller の Network Controller における "ディレクトリ構造" へアクセスされる脆弱性 CWE-200
情報漏えい
CVE-2010-0549 2012-12-20 19:28 2010-01-22 Show GitHub Exploit DB Packet Storm
228429 5 警告 Xerox - Xerox WorkCentre 5632 などにおけるメールボックスへアクセスされる脆弱性 CWE-200
情報漏えい
CVE-2010-0548 2012-12-20 19:28 2010-01-22 Show GitHub Exploit DB Packet Storm
228430 4.3 警告 SugarCRM - SugarCRM のオンライン Documents 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0465 2012-12-20 19:28 2010-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
318801 7.8 HIGH
Local
okta verify Okta Verify for Windows is vulnerable to privilege escalation through DLL hijacking. The vulnerability is fixed in Okta Verify for Windows version 5.0.2. To remediate this vulnerability, upgrade to 5… CWE-427
 Uncontrolled Search Path Element
CVE-2024-7061 2024-08-29 03:25 2024-08-8 Show GitHub Exploit DB Packet Storm
318802 5.4 MEDIUM
Network
opentext alm_octane Improper Neutralization vulnerability (XSS) has been discovered in OpenText™ ALM Octane. The vulnerability affects all version prior to version 23.4. The vulnerability could cause remote code executi… CWE-79
Cross-site Scripting
CVE-2024-6361 2024-08-29 03:17 2024-08-6 Show GitHub Exploit DB Packet Storm
318803 5.4 MEDIUM
Network
zephyr-one zephyr_project_manager Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dylan James Zephyr Project Manager allows Reflected XSS.This issue affects Zephyr Project … CWE-79
Cross-site Scripting
CVE-2024-43915 2024-08-29 02:44 2024-08-27 Show GitHub Exploit DB Packet Storm
318804 7.5 HIGH
Network
yanzhenjie andserver AndServer 2.1.12 is vulnerable to Directory Traversal. CWE-22
Path Traversal
CVE-2024-41310 2024-08-29 02:42 2024-08-3 Show GitHub Exploit DB Packet Storm
318805 - - - An SEH-based buffer overflow in the BPQ32 HTTP Server in BPQ32 6.0.24.1 allows remote attackers with access to the Web Terminal to achieve remote code execution via an HTTP POST /TermInput request. - CVE-2024-34087 2024-08-29 01:35 2024-08-27 Show GitHub Exploit DB Packet Storm
318806 - - - An eval Injection vulnerability in the component invesalius/reader/dicom.py of InVesalius 3.1.99991 through 3.1.99998 allows attackers to execute arbitrary code via loading a crafted DICOM file. - CVE-2024-42845 2024-08-29 01:35 2024-08-24 Show GitHub Exploit DB Packet Storm
318807 9.8 CRITICAL
Network
hitachienergy microscada_x_sys600 The product exposes a service that is intended for local only to all network interfaces without any authentication. CWE-306
Missing Authentication for Critical Function
CVE-2024-7940 2024-08-29 01:24 2024-08-27 Show GitHub Exploit DB Packet Storm
318808 9.8 CRITICAL
Network
- - Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. - CVE-2024-35326 2024-08-29 01:15 2024-06-14 Show GitHub Exploit DB Packet Storm
318809 9.8 CRITICAL
Network
- - Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. - CVE-2024-35325 2024-08-29 01:15 2024-06-14 Show GitHub Exploit DB Packet Storm
318810 7.5 HIGH
Network
- - Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. - CVE-2024-35328 2024-08-29 01:15 2024-06-14 Show GitHub Exploit DB Packet Storm