Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250891 7.5 危険 accimoveis - DescargarVista ACC Imoveis における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4273 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250892 7.5 危険 pulseinfotech
Joomla!
- Joomla! 用の Pulse Infotech Sponsor Wall コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4272 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250893 7.5 危険 ImpressCMS - ImpressCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4271 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250894 5 警告 Netshine Software - nBill (com_netinvoice) コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4270 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250895 7.5 危険 Open Dynamics - Collabtive の managechat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4269 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250896 7.5 危険 pulseinfotech
Joomla!
- Joomla! 用の Pulse Infotech Flip Wall コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4268 2012-03-27 18:42 2010-11-16 Show GitHub Exploit DB Packet Storm
250897 2.6 注意 レッドハット - Red Hat JBoss Enterprise Application Platform の JBoss Remoting におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-4265 2012-03-27 18:42 2010-12-8 Show GitHub Exploit DB Packet Storm
250898 6.8 警告 Xfig project - Xfig におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4262 2012-03-27 18:42 2010-12-17 Show GitHub Exploit DB Packet Storm
250899 6.8 警告 FontForge project - FontForge におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4259 2012-03-27 18:42 2010-12-7 Show GitHub Exploit DB Packet Storm
250900 6 警告 WordPress.org - WordPress の do_trackbacks 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4257 2012-03-27 18:42 2010-11-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208771 7.5 HIGH
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. For Wikis using OATHAuth on a farm/cluster (such as via CentralAuth), rate limit… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2020-25827 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208772 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. The non-jqueryMsg version of mw.message().parse() doesn't escape HTML. This affects both message contents … CWE-79
Cross-site Scripting
CVE-2020-25828 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208773 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki 1.32.x through 1.34.x before 1.34.4. LogEventList::getFiltersDesc is insecurely using message text to build options names for an HTML multi-select field. The rele… CWE-79
Cross-site Scripting
CVE-2020-25815 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208774 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, XSS related to jQuery can occur. The attacker creates a message with [javascript:payload xss] and turns it into a jQuery object wi… CWE-79
Cross-site Scripting
CVE-2020-25814 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208775 5.3 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, Special:UserRights exposes the existence of hidden users. NVD-CWE-noinfo
CVE-2020-25813 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208776 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki 1.34.x before 1.34.4. On Special:Contributions, the NS filter uses unescaped messages as keys in the option key for an HTMLForm specifier. This is vulnerable to a… CWE-79
Cross-site Scripting
CVE-2020-25812 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
208777 5.3 MEDIUM
Local
qemu
debian
qemu
debian_linux
hw/usb/hcd-ohci.c in QEMU 5.0.0 has an infinite loop when a TD list has a loop. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-25625 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208778 9.8 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged acc… CWE-798
 Use of Hard-coded Credentials
CVE-2020-25749 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208779 8.1 HIGH
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
A Cleartext Transmission issue was discovered on Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339). Someone in the middle can intercept and modify the video data from the c… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-25748 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208780 9.4 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, … CWE-306
Missing Authentication for Critical Function
CVE-2020-25747 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm