Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228721 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1358 2012-12-20 19:29 2010-01-13 Show GitHub Exploit DB Packet Storm
228722 4.3 警告 sbddirectorysoftware - SBD Directory Software の editors/logindialogue.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1357 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
228723 10 危険 vsecurity - TANDBERG VCS における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-1356 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
228724 4.3 警告 vsecurity - TANDBERG VCS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1355 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
228725 5 警告 ternaria - Joomla! 用の vjdeo コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1354 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
228726 5 警告 wowjoomla - Joomla! 用の loginbox コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1353 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
228727 6.8 警告 ribafs - Mini CMS RibaFS の admin/login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1346 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
228728 7.5 危険 systemsoftware - Systemsoftware Community Black Forum の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1341 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
228729 4.3 警告 robertotto - WoltLab Burning Board 用の Teamsite Hack プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1339 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
228730 7.5 危険 robertotto - WoltLab Burning Board 用の Teamsite Hack プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1338 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
216291 8.8 HIGH
Network
rukovoditel rukovoditel An exploitable SQL injection vulnerability exists in the ‘entities/fields’ page of the Rukovoditel Project Management App 2.7.2. The heading_field_id parameter in ‘‘entities/fields’ page is vulnerabl… CWE-89
SQL Injection
CVE-2020-13588 2024-11-21 14:01 2021-08-18 Show GitHub Exploit DB Packet Storm
216292 8.8 HIGH
Network
drupal drupal Cross Site Request Forgery vulnerability in Drupal Core Form API does not properly handle certain form input from cross-site requests, which can lead to other vulnerabilities. CWE-352
 Origin Validation Error
CVE-2020-13663 2024-11-21 14:01 2021-06-12 Show GitHub Exploit DB Packet Storm
216293 6.1 MEDIUM
Network
drupal drupal Cross-site scripting vulnerability in l Drupal Core allows an attacker could leverage the way that HTML is rendered for affected forms in order to exploit the vulnerability. This issue affects: Drupa… CWE-79
Cross-site Scripting
CVE-2020-13688 2024-11-21 14:01 2021-06-12 Show GitHub Exploit DB Packet Storm
216294 7.8 HIGH
Local
zephyrproject zephyr Integer Overflow in memory allocating functions. Zephyr versions >= 1.14.2, >= 2.4.0 contain Integer Overflow or Wraparound (CWE-190). For more information, see https://github.com/zephyrproject-rtos/… CWE-190
 Integer Overflow or Wraparound
CVE-2020-13603 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216295 5.5 MEDIUM
Local
zephyrproject zephyr Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation (CWE-20), Loop with Unreachable Exit Condition ('Infinite Loop') (CWE-835). Fo… CWE-20
CWE-835
 Improper Input Validation 
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-13602 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216296 9.8 CRITICAL
Network
zephyrproject zephyr Possible read out of bounds in dns read. Zephyr versions >= 1.14.2, >= 2.3.0 contain Out-of-bounds Read (CWE-125). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advi… CWE-125
Out-of-bounds Read
CVE-2020-13601 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216297 7.6 HIGH
Physics
zephyrproject zephyr Malformed SPI in response for eswifi can corrupt kernel memory. Zephyr versions >= 1.14.2, >= 2.3.0 contain Heap-based Buffer Overflow (CWE-122). For more information, see https://github.com/zephyrpr… CWE-787
 Out-of-bounds Write
CVE-2020-13600 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216298 3.3 LOW
Local
zephyrproject zephyr Security problem with settings and littlefs. Zephyr versions >= 1.14.2, >= 2.3.0 contain Incorrect Default Permissions (CWE-276). For more information, see https://github.com/zephyrproject-rtos/zephy… CWE-276
Incorrect Default Permissions 
CVE-2020-13599 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216299 7.8 HIGH
Local
zephyrproject zephyr FS: Buffer Overflow when enabling Long File Names in FAT_FS and calling fs_stat. Zephyr versions >= v1.14.2, >= v2.3.0 contain Stack-based Buffer Overflow (CWE-121). For more information, see https:/… CWE-787
 Out-of-bounds Write
CVE-2020-13598 2024-11-21 14:01 2021-05-26 Show GitHub Exploit DB Packet Storm
216300 5.3 MEDIUM
Network
drupal drupal Access bypass vulnerability in of Drupal Core Workspaces allows an attacker to access data without correct permissions. The Workspaces module doesn't sufficiently check access permissions when switch… CWE-276
Incorrect Default Permissions 
CVE-2020-13667 2024-11-21 14:01 2021-05-18 Show GitHub Exploit DB Packet Storm