Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228911 7.5 危険 woltlab - wBB Lite の pms.php における SQL インジェクションの脆弱性 - CVE-2007-0812 2012-12-20 18:19 2007-02-7 Show GitHub Exploit DB Packet Storm
228912 7.5 危険 ptirhiikmods - ptirhiikmods の Categories hierarchy における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0809 2012-12-20 18:19 2007-02-7 Show GitHub Exploit DB Packet Storm
228913 6.8 警告 stlport - STLport におけるバッファオーバーフローの脆弱性 - CVE-2007-0803 2012-12-20 18:19 2007-02-7 Show GitHub Exploit DB Packet Storm
228914 7.5 危険 uapplication - Ublog Reload の badword.asp における SQL インジェクションの脆弱性 - CVE-2007-0799 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228915 4.3 警告 uapplication - Ublog Reload におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0798 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228916 7.5 危険 wap - Wap Portal Server における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0795 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228917 7.5 危険 SmartSoft - SmartFTP におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0790 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228918 6.8 警告 Simple Invoices - Simple Invoices の controller.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0787 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228919 7.5 危険 rbl - Raymond BERTHOU script collection の tPassword 用の login.asp における SQL インジェクションの脆弱性 - CVE-2007-0784 2012-12-20 18:19 2007-02-6 Show GitHub Exploit DB Packet Storm
228920 4.3 警告 Yahoo! - Yahoo! Messenger の Contact Details 機能におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0768 2012-12-20 18:19 2007-02-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210401 8.8 HIGH
Network
fasterxml
debian
netapp
oracle
jackson-databind
debian_linux
steelstore_cloud_integrated_storage
retail_xstore_point_of_service
primavera_unifier
retail_service_backbone
weblogic_server
retail_merchandising_sy…
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to com.caucho.config.types.ResourceRef (aka caucho-quercus). NVD-CWE-Other
CVE-2020-10673 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210402 8.8 HIGH
Network
fasterxml
debian
netapp
oracle
jackson-databind
debian_linux
steelstore_cloud_integrated_storage
retail_xstore_point_of_service
primavera_unifier
retail_service_backbone
weblogic_server
retail_merchandising_sy…
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka… NVD-CWE-Other
CVE-2020-10672 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210403 6.7 MEDIUM
Local
docker desktop Docker Desktop allows local privilege escalation to NT AUTHORITY\SYSTEM because it mishandles the collection of diagnostics with Administrator privileges, leading to arbitrary DACL permissions overwr… CWE-59
Link Following
CVE-2020-10665 2024-11-21 13:55 2020-03-19 Show GitHub Exploit DB Packet Storm
210404 4.3 MEDIUM
Network
entrustdatacard entelligence_security_provider Entrust Entelligence Security Provider (ESP) before 10.0.60 on Windows mishandles errors during SSL Certificate Validation, leading to situations where (for example) a user continues to interact with… CWE-295
Improper Certificate Validation 
CVE-2020-10659 2024-11-21 13:55 2020-03-18 Show GitHub Exploit DB Packet Storm
210405 5.4 MEDIUM
Network
opencart opencart OpenCart 3.0.3.2 allows remote authenticated users to conduct XSS attacks via a crafted filename in the users' image upload section. CWE-79
Cross-site Scripting
CVE-2020-10596 2024-11-21 13:55 2020-03-18 Show GitHub Exploit DB Packet Storm
210406 9.8 CRITICAL
Network
r-consortium rmysql RMySQL through 0.10.19 allows SQL Injection. CWE-89
SQL Injection
CVE-2020-10380 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210407 9.8 CRITICAL
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype. CWE-89
SQL Injection
CVE-2020-10243 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210408 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Inadequate handling of CSS selectors in the Protostar and Beez3 JavaScript allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-10242 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210409 8.8 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Missing token checks in the image actions of com_templates lead to CSRF. CWE-352
 Origin Validation Error
CVE-2020-10241 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm
210410 5.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.16. Missing length checks in the user table can lead to the creation of users with duplicate usernames and/or email addresses. CWE-20
 Improper Input Validation 
CVE-2020-10240 2024-11-21 13:55 2020-03-17 Show GitHub Exploit DB Packet Storm