Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230281 7.5 危険 woltlab - WoltLab Burning Book の addentry.php における任意の PHP コードを実行される脆弱性 - CVE-2006-5509 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230282 7.5 危険 woltlab - WoltLab Burning Book の addentry.php における SQL インジェクションの脆弱性 - CVE-2006-5508 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230283 7.5 危険 wiclear - WiClear における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5506 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230284 4.3 警告 Simple Machines - SMF の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5504 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230285 4.3 警告 Simple Machines - SMF の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5503 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230286 5.1 警告 xchangeboard - XchangeBoard の inc/DBInterface.php における SQL インジェクションの脆弱性 - CVE-2006-5500 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230287 6.8 警告 s9y - s9y におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5499 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230288 4.3 警告 timothy claason - Timothy Claason KnowledgeBank におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5496 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230289 7.5 危険 trawler - Trawler Web CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5495 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
230290 7.5 危険 PHPNUKE - PHP-Nuke 用の pandaBB モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5494 2012-12-20 18:02 2006-10-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211271 7.5 HIGH
Network
walmart concord An issue was discovered in Walmart Labs Concord before 1.44.0. CORS Access-Control-Allow-Origin headers have a potentially unsafe dependency on Origin headers, and are not configurable. This allows r… NVD-CWE-noinfo
CVE-2020-10591 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
211272 7.8 HIGH
Local
v2rayl_project v2rayl v2rayL 2.1.3 allows local users to achieve root access because /etc/v2rayL/config.json is owned by a low-privileged user but contains commands that are executed as root, after v2rayL.service is resta… CWE-269
 Improper Privilege Management
CVE-2020-10589 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
211273 7.8 HIGH
Local
v2rayl_project v2rayl v2rayL 2.1.3 allows local users to achieve root access because /etc/v2rayL/add.sh and /etc/v2rayL/remove.sh are owned by a low-privileged user but execute as root via Sudo. CWE-269
 Improper Privilege Management
CVE-2020-10588 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
211274 7.8 HIGH
Local
antixlinux
mxlinux
antix_linux
mx_linux
antiX and MX Linux allow local users to achieve root access via "persist-config --command /bin/sh" because of the Sudo configuration. NVD-CWE-noinfo
CVE-2020-10587 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211275 7.5 HIGH
Network
q-cms qcms An arbitrary file read vulnerability exists in system/controller/backend/template.php in QCMS v3.0.1. NVD-CWE-noinfo
CVE-2020-10578 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211276 4.8 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. janus.c has multiple concurrent threads that misuse the source property of a session, leading to a race condition when claiming sessions. CWE-362
Race Condition
CVE-2020-10577 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211277 5.9 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. plugins/janus_voicemail.c in the VoiceMail plugin has a race condition that could cause a server crash. CWE-362
Race Condition
CVE-2020-10576 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211278 4.2 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. plugins/janus_videocall.c in the VideoCall plugin mishandles session management because a race condition causes some references to be freed too early o… CWE-362
Race Condition
CVE-2020-10575 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211279 9.8 CRITICAL
Network
meetecho janus An issue was discovered in Janus through 0.9.1. janus.c tries to use a string that doesn't actually exist during a "query_logger" Admin API request, because of a typo in the JSON validation. CWE-706
 Use of Incorrectly-Resolved Name or Reference
CVE-2020-10574 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
211280 7.5 HIGH
Network
meetecho janus An issue was discovered in Janus through 0.9.1. janus_audiobridge.c has a double mutex unlock when listing private rooms in AudioBridge. CWE-667
 Improper Locking
CVE-2020-10573 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm