Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249941 5 警告 The phpMyAdmin Project - phpMyAdmin における認証を回避する脆弱性 CWE-287
不適切な認証
CVE-2010-4481 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249942 4.3 警告 The phpMyAdmin Project - PhpMyAdmin の error.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4480 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249943 4.3 警告 Electric Sheep Fencing - pfSense におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4412 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
249944 4.3 警告 alberto pittoni - AlGuest におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4407 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249945 6.8 警告 brunetton - Brunetton LittlePhpGallery の gallery.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4406 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249946 4.3 警告 anything-digital - Joomla! の Yannick Gaultier コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4405 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249947 7.5 危険 anything-digital - Joomla! の Yannick Gaultier コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4404 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249948 5 警告 devbits - WordPress の Register Plus プラグインにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-4403 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249949 4.3 警告 devbits - WordPress の wp-login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4402 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
249950 5 警告 dynpg - DynPG CMS の languages.inc.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-4401 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210391 7.8 HIGH
Local
mozilla firefox
firefox_esr
thunderbird
Firefox could be made to load attacker-supplied DLL files from the installation directory. This required an attacker that is already capable of placing files in the installation directory. *Note: Thi… CWE-427
 Uncontrolled Search Path Element
CVE-2020-15657 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210392 8.8 HIGH
Network
mozilla
opensuse
canonical
thunderbird
firefox_esr
firefox
leap
ubuntu_linux
JIT optimizations involving the Javascript arguments object could confuse later optimizations. This risk was already mitigated by various precautions in the code, resulting in this bug rated at only … CWE-843
Type Confusion
CVE-2020-15656 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210393 6.5 MEDIUM
Network
mozilla
opensuse
canonical
thunderbird
firefox_esr
firefox
leap
ubuntu_linux
A redirected HTTP request which is observed or modified through a web extension could bypass existing CORS checks, leading to potential disclosure of cross-origin information. This vulnerability affe… NVD-CWE-noinfo
CVE-2020-15655 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210394 6.5 MEDIUM
Network
mozilla
canonical
thunderbird
firefox_esr
firefox
ubuntu_linux
When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not. This could lead to a perceived brok… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-15654 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210395 6.5 MEDIUM
Network
mozilla
canonical
thunderbird
firefox_esr
firefox
ubuntu_linux
An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links. This could have led to security issues for websites relying on sandbox configurations that allowed po… NVD-CWE-Other
CVE-2020-15653 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210396 6.5 MEDIUM
Network
mozilla
canonical
firefox
firefox_esr
thunderbird
ubuntu_linux
By observing the stack trace for JavaScript errors in web workers, it was possible to leak the result of a cross-origin redirect. This applied only to content that can be parsed as script. This vulne… CWE-346
 Origin Validation Error
CVE-2020-15652 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210397 4.3 MEDIUM
Network
mozilla firefox A unicode RTL order character in the downloaded file name can be used to change the file's name during the download UI flow to change the file extension. This vulnerability affects Firefox for iOS < … NVD-CWE-noinfo
CVE-2020-15651 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210398 5.5 MEDIUM
Local
mozilla firefox_esr Given an installed malicious file picker application, an attacker was able to overwrite local files and thus overwrite Firefox settings (but not access the previous profile). *Note: This issue only a… NVD-CWE-noinfo
CVE-2020-15650 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210399 5.5 MEDIUM
Local
mozilla firefox_esr Given an installed malicious file picker application, an attacker was able to steal and upload local files of their choosing, regardless of the actually files picked. *Note: This issue only affected … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-15649 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
210400 6.5 MEDIUM
Network
mozilla firefox
thunderbird
Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird < 78 and Firefox < 78.0.2. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-15648 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm