Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249231 4.3 警告 Google - Google Chrome における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4483 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249232 5 警告 Google - Google Chrome におけるポップアップブロッカーを回避される脆弱性 CWE-noinfo
情報不足
CVE-2010-4482 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249233 5 警告 The phpMyAdmin Project - phpMyAdmin における認証を回避する脆弱性 CWE-287
不適切な認証
CVE-2010-4481 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249234 4.3 警告 The phpMyAdmin Project - PhpMyAdmin の error.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4480 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249235 4.3 警告 Electric Sheep Fencing - pfSense におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4412 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249236 4.3 警告 alberto pittoni - AlGuest におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4407 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249237 6.8 警告 brunetton - Brunetton LittlePhpGallery の gallery.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4406 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249238 4.3 警告 anything-digital - Joomla! の Yannick Gaultier コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4405 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249239 7.5 危険 anything-digital - Joomla! の Yannick Gaultier コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4404 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249240 5 警告 devbits - WordPress の Register Plus プラグインにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-4403 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211691 7.5 HIGH
Network
python-rsa_project
fedoraproject
canonical
python-rsa
fedora
ubuntu_linux
Python-RSA before 4.1 ignores leading '\0' bytes during decryption of ciphertext. This could conceivably have a security-relevant impact, e.g., by helping an attacker to infer that an application use… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-13757 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
211692 7.2 HIGH
Network
quickbox quickbox In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user has sudo privileges to execute grep as root without a password, which allows an attacker to obtain s… CWE-306
CWE-269
Missing Authentication for Critical Function
 Improper Privilege Management
CVE-2020-13695 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
211693 8.8 HIGH
Network
quickbox quickbox In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user can execute sudo mysql without a password, which means that the www-data user can execute arbitrary … CWE-78
OS Command 
CVE-2020-13694 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
211694 8.8 HIGH
Network
quickbox quickbox QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8 allows an authenticated remote attacker to execute code on the server via command injection in the servicestart parameter. CWE-78
OS Command 
CVE-2020-13448 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
211695 7.8 HIGH
Local
youhua windows_master In Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact b… CWE-20
 Improper Input Validation 
CVE-2020-13634 2024-11-21 14:01 2020-05-30 Show GitHub Exploit DB Packet Storm
211696 9.8 CRITICAL
Network
bbpress bbpress An unauthenticated privilege-escalation issue exists in the bbPress plugin before 2.6.5 for WordPress when New User Registration is enabled. NVD-CWE-noinfo
CVE-2020-13693 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm
211697 4.8 MEDIUM
Network
cmsmadesimple cms_made_simple CMS Made Simple through 2.2.14 allows XSS via a crafted File Picker profile name. CWE-79
Cross-site Scripting
CVE-2020-13660 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm
211698 7.5 HIGH
Network
jerryscript jerryscript parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated by a scanner_reverse_info_list NULL pointer dereference and a scanner_scan_all a… CWE-754
CWE-476
CWE-617
 Improper Check for Unusual or Exceptional Conditions
 NULL Pointer Dereference
 Reachable Assertion
CVE-2020-13649 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm
211699 3.2 LOW
Local
qemu
debian
opensuse
canonical
qemu
debian_linux
leap
ubuntu_linux
In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS user. CWE-125
Out-of-bounds Read
CVE-2020-13362 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm
211700 3.9 LOW
Local
qemu
debian
opensuse
canonical
qemu
debian_linux
leap
ubuntu_linux
In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write… CWE-787
 Out-of-bounds Write
CVE-2020-13361 2024-11-21 14:01 2020-05-28 Show GitHub Exploit DB Packet Storm