Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 12:10 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230361 6.8 警告 webinsta - Webinsta FM Manager の admin/login.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2181 2012-12-20 18:19 2007-04-24 Show GitHub Exploit DB Packet Storm
230362 7.8 危険 raiden professional servers - RaidenFTPD の XceddZipLib におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2179 2012-12-20 18:19 2007-04-24 Show GitHub Exploit DB Packet Storm
230363 5.1 警告 ProFTPD Project - ProFTPD の Auth API における認証を回避される脆弱性 - CVE-2007-2165 2012-12-20 18:19 2007-04-16 Show GitHub Exploit DB Packet Storm
230364 7.8 危険 zomplog - Zomplog の upload/force_download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2157 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230365 7.5 危険 rezervi generic - Rezervi Generic における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2156 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230366 7.8 危険 phpfaber - phpFaber TopSites の template.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2155 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230367 10 危険 stephen craton - Stephen Craton Chatness における権限を取得される脆弱性 - CVE-2007-2149 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230368 6.5 警告 stephen craton - Stephen Craton Chatness の admin/save.php における .html ファイルへ PHP コードを挿入される脆弱性 - CVE-2007-2148 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230369 7.5 危険 sitebar - Sitebar における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2088 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230370 6.9 警告 zonelabs - Check Point Zone Labs ZoneAlarm の vsdatant.sys におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2083 2012-12-20 18:19 2007-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213361 9.1 CRITICAL
Network
styria django-rest-framework-json_web_tokens An issue was discovered in drf-jwt 1.15.x before 1.15.1. It allows attackers with access to a notionally invalidated token to obtain a new, working token via the refresh endpoint, because the blackli… CWE-287
Improper Authentication
CVE-2020-10594 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
213362 7.5 HIGH
Network
walmart concord An issue was discovered in Walmart Labs Concord before 1.44.0. CORS Access-Control-Allow-Origin headers have a potentially unsafe dependency on Origin headers, and are not configurable. This allows r… NVD-CWE-noinfo
CVE-2020-10591 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
213363 7.8 HIGH
Local
v2rayl_project v2rayl v2rayL 2.1.3 allows local users to achieve root access because /etc/v2rayL/config.json is owned by a low-privileged user but contains commands that are executed as root, after v2rayL.service is resta… CWE-269
 Improper Privilege Management
CVE-2020-10589 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
213364 7.8 HIGH
Local
v2rayl_project v2rayl v2rayL 2.1.3 allows local users to achieve root access because /etc/v2rayL/add.sh and /etc/v2rayL/remove.sh are owned by a low-privileged user but execute as root via Sudo. CWE-269
 Improper Privilege Management
CVE-2020-10588 2024-11-21 13:55 2020-03-16 Show GitHub Exploit DB Packet Storm
213365 7.8 HIGH
Local
antixlinux
mxlinux
antix_linux
mx_linux
antiX and MX Linux allow local users to achieve root access via "persist-config --command /bin/sh" because of the Sudo configuration. NVD-CWE-noinfo
CVE-2020-10587 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
213366 7.5 HIGH
Network
q-cms qcms An arbitrary file read vulnerability exists in system/controller/backend/template.php in QCMS v3.0.1. NVD-CWE-noinfo
CVE-2020-10578 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
213367 4.8 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. janus.c has multiple concurrent threads that misuse the source property of a session, leading to a race condition when claiming sessions. CWE-362
Race Condition
CVE-2020-10577 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
213368 5.9 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. plugins/janus_voicemail.c in the VoiceMail plugin has a race condition that could cause a server crash. CWE-362
Race Condition
CVE-2020-10576 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
213369 4.2 MEDIUM
Network
meetecho janus An issue was discovered in Janus through 0.9.1. plugins/janus_videocall.c in the VideoCall plugin mishandles session management because a race condition causes some references to be freed too early o… CWE-362
Race Condition
CVE-2020-10575 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm
213370 9.8 CRITICAL
Network
meetecho janus An issue was discovered in Janus through 0.9.1. janus.c tries to use a string that doesn't actually exist during a "query_logger" Admin API request, because of a typo in the JSON validation. CWE-706
 Use of Incorrectly-Resolved Name or Reference
CVE-2020-10574 2024-11-21 13:55 2020-03-15 Show GitHub Exploit DB Packet Storm