Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230371 7.5 危険 videodb - VideoDB の core/pdf.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5155 2012-12-20 18:02 2006-10-5 Show GitHub Exploit DB Packet Storm
230372 7.5 危険 vamp webmail - VAMP Webmail の wamp_dir/setup/yesno.phtml における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5147 2012-12-20 18:02 2006-10-5 Show GitHub Exploit DB Packet Storm
230373 6.8 警告 y-blog - Yblog におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5146 2012-12-20 18:02 2006-10-5 Show GitHub Exploit DB Packet Storm
230374 5 警告 UBB Systems - Groupee UBB.threads における重要な情報を取得される脆弱性 - CVE-2006-5138 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230375 5.1 警告 UBB Systems - Groupee UBB.threads における PHP コードを挿入される脆弱性 - CVE-2006-5137 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230376 7.5 危険 UBB Systems - Groupee UBB.threads の ubbt.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5136 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230377 7.5 危険 steve poulsen - GuildFTPd におけるバッファオーバーフローの脆弱性 - CVE-2006-5133 2012-12-20 18:02 2006-05-26 Show GitHub Exploit DB Packet Storm
230378 7.5 危険 phpmyagenda - phpMyAgenda における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5132 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230379 7.5 危険 salims softhouse - ph03y3nk JAF CMS の module/shout/jafshout.php における "" で囲まれたセクション内の任意のコードを実行される脆弱性 - CVE-2006-5131 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230380 6.8 警告 salims softhouse - ph03y3nk JAF CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5130 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211291 5.4 MEDIUM
Network
hashicorp nomad HashiCorp Nomad and Nomad Enterprise up to 0.10.4 contained a cross-site scripting vulnerability such that files from a malicious workload could cause arbitrary JavaScript to execute in the web UI. F… CWE-79
Cross-site Scripting
CVE-2020-10944 2024-11-21 13:56 2020-04-28 Show GitHub Exploit DB Packet Storm
211292 6.5 MEDIUM
Network
percona xtrabackup Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is p… CWE-200
Information Exposure
CVE-2020-10997 2024-11-21 13:56 2020-04-27 Show GitHub Exploit DB Packet Storm
211293 8.1 HIGH
Network
percona xtradb_cluster An issue was discovered in Percona XtraDB Cluster before 5.7.28-31.41.2. A bundled script inadvertently sets a static transition_key for SST processes in place of the random key expected. CWE-798
CWE-838
 Use of Hard-coded Credentials
 Inappropriate Encoding for Output Context
CVE-2020-10996 2024-11-21 13:56 2020-04-27 Show GitHub Exploit DB Packet Storm
211294 7.5 HIGH
Network
admidio admidio SQL Injection was discovered in Admidio before version 3.3.13. The main cookie parameter is concatenated into a SQL query without any input validation/sanitization, thus an attacker without logging i… CWE-89
SQL Injection
CVE-2020-11004 2024-11-21 13:56 2020-04-25 Show GitHub Exploit DB Packet Storm
211295 5.0 MEDIUM
Network
helm helm Their is an information disclosure vulnerability in Helm from version 3.1.0 and before version 3.2.0. `lookup` is a Helm template function introduced in Helm v3. It is able to lookup resources in the… CWE-200
Information Exposure
CVE-2020-11013 2024-11-21 13:56 2020-04-25 Show GitHub Exploit DB Packet Storm
211296 7.5 HIGH
Network
minio minio MinIO versions before RELEASE.2020-04-23T00-58-49Z have an authentication bypass issue in the MinIO admin API. Given an admin access key, it is possible to perform admin API operations i.e. creating … CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-11012 2024-11-21 13:56 2020-04-24 Show GitHub Exploit DB Packet Storm
211297 9.8 CRITICAL
Network
veeam one This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specifi… CWE-502
 Deserialization of Untrusted Data
CVE-2020-10915 2024-11-21 13:56 2020-04-23 Show GitHub Exploit DB Packet Storm
211298 9.8 CRITICAL
Network
veeam one This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specifi… CWE-502
 Deserialization of Untrusted Data
CVE-2020-10914 2024-11-21 13:56 2020-04-23 Show GitHub Exploit DB Packet Storm
211299 7.8 HIGH
Local
foxitsoftware foxit_reader
phantompdf
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the … CWE-843
Type Confusion
CVE-2020-10913 2024-11-21 13:56 2020-04-23 Show GitHub Exploit DB Packet Storm
211300 7.8 HIGH
Local
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the … CWE-843
Type Confusion
CVE-2020-10912 2024-11-21 13:56 2020-04-23 Show GitHub Exploit DB Packet Storm