Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229471 4.9 警告 サン・マイクロシステムズ - Solaris の UFS filesystem におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5726 2012-12-20 18:02 2006-11-6 Show GitHub Exploit DB Packet Storm
229472 4.3 警告 The phpMyAdmin Project - phpMyAdmin の error.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5718 2012-12-20 18:02 2006-11-1 Show GitHub Exploit DB Packet Storm
229473 4.3 警告 Zend Technologies Ltd. - ZendGData Preview におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5717 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
229474 7.5 危険 phpeasydata pro - PHPEasyData Pro の index.php における SQL インジェクションの脆弱性 - CVE-2006-5707 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
229475 6 警告 WordPress.org - WordPress の plugins/wp-db-backup.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5705 2012-12-20 18:02 2006-10-27 Show GitHub Exploit DB Packet Storm
229476 4.3 警告 Tiki Software Community Association - Tikiwiki の featured_link.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-5703 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
229477 5 警告 Tiki Software Community Association - Tikiwiki における重要な情報 (MySQL ユーザ名およびパスワード) を取得される脆弱性 CWE-200
情報漏えい
CVE-2006-5702 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
229478 6.4 警告 uni-vert - Uni-Vert PhpLeague の consult/classement.php における SQL インジェクションの脆弱性 - CVE-2006-5676 2012-12-20 18:02 2006-11-2 Show GitHub Exploit DB Packet Storm
229479 7.5 危険 spider friendly - phpBB モジュール Spider Friendly の admin/modules_data.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5665 2012-12-20 18:02 2006-11-2 Show GitHub Exploit DB Packet Storm
229480 6.8 警告 virtech - VIRtech Netquery の nquser.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5661 2012-12-20 18:02 2006-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198611 4.8 MEDIUM
Network
fluxbb fluxbb FluxBB 1.5.11 is affected by cross-site scripting (XSS in the Blog Content component. This vulnerability can allow an attacker to inject the XSS payload in "Blog Content" and each time any user will … CWE-79
Cross-site Scripting
CVE-2020-35240 2024-11-21 14:27 2020-12-31 Show GitHub Exploit DB Packet Storm
198612 4.7 MEDIUM
Network
vidyo vidyo Vidyo 02-09-/D allows clickjacking via the portal/ URI. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-35735 2024-11-21 14:27 2020-12-30 Show GitHub Exploit DB Packet Storm
198613 6.1 MEDIUM
Network
roundcube
fedoraproject
debian
webmail
fedora
debian_linux
An XSS issue was discovered in Roundcube Webmail before 1.2.13, 1.3.x before 1.3.16, and 1.4.x before 1.4.10. The attacker can send a plain text e-mail message, with JavaScript in a link reference el… CWE-79
Cross-site Scripting
CVE-2020-35730 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198614 7.5 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! 1.7.0 through 3.9.22. Lack of input validation while handling ACL rulesets can cause write ACL violations. CWE-20
 Improper Input Validation 
CVE-2020-35616 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198615 6.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! 2.5.0 through 3.9.22. A missing token check in the emailexport feature of com_privacy causes a CSRF vulnerability. CWE-352
 Origin Validation Error
CVE-2020-35615 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198616 5.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! 3.9.0 through 3.9.22. Improper handling of the username leads to a user enumeration attack vector in the backend login page. NVD-CWE-noinfo
CVE-2020-35614 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198617 9.8 CRITICAL
Network
joomla joomla\! An issue was discovered in Joomla! 3.0.0 through 3.9.22. Improper filter blacklist configuration leads to a SQL injection vulnerability in the backend user list. CWE-89
SQL Injection
CVE-2020-35613 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198618 7.5 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! 2.5.0 through 3.9.22. The folder parameter of mod_random_image lacked input validation, leading to a path traversal vulnerability. CWE-22
Path Traversal
CVE-2020-35612 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198619 7.5 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! 2.5.0 through 3.9.22. The globlal configuration page does not remove secrets from the HTML output, disclosing the current values. CWE-200
Information Exposure
CVE-2020-35611 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm
198620 7.5 HIGH
Network
joomla joomla\! An issue was discovered in Joomla! 2.5.0 through 3.9.22. The autosuggestion feature of com_finder did not respect the access level of the corresponding terms. NVD-CWE-noinfo
CVE-2020-35610 2024-11-21 14:27 2020-12-29 Show GitHub Exploit DB Packet Storm