Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252461 7.5 危険 Michau Enterprises - SenseSites CommonSense CMS の article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5037 2011-12-9 13:41 2011-11-2 Show GitHub Exploit DB Packet Storm
252462 7.5 危険 Groone's World - Groone's Simple Contact Form における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-5038 2011-12-9 13:40 2011-11-2 Show GitHub Exploit DB Packet Storm
252463 7.5 危険 ScriptsFeed.com - ScriptsFeed Recipes Listing Portal における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5039 2011-12-9 13:40 2011-11-2 Show GitHub Exploit DB Packet Storm
252464 6.8 警告 John Bradshaw - Nucleus 用 NP_Gallery プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-5040 2011-12-9 13:39 2011-11-2 Show GitHub Exploit DB Packet Storm
252465 7.5 危険 John Bradshaw - Nucleus 用 NP_Gallery プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5041 2011-12-9 13:38 2011-11-2 Show GitHub Exploit DB Packet Storm
252466 4.3 警告 Blue Constant Media Ltd - Joomla! 用 DJ-ArtGallery コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5042 2011-12-9 13:38 2011-11-2 Show GitHub Exploit DB Packet Storm
252467 6 警告 Blue Constant Media Ltd - Joomla! 用 DJ-ArtGallery コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5043 2011-12-9 13:34 2011-11-2 Show GitHub Exploit DB Packet Storm
252468 6 警告 Kanich - Joomla! 用 Search Log コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5044 2011-12-9 13:33 2011-11-2 Show GitHub Exploit DB Packet Storm
252469 4.3 警告 Sell@Site - Smart ASP Survey におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5045 2011-12-9 13:32 2011-11-2 Show GitHub Exploit DB Packet Storm
252470 5.1 警告 FFFTPプロジェクト - FFFTP における実行ファイル読み込みに関する脆弱性 CWE-Other
その他
CVE-2011-4266 2011-12-9 12:02 2011-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224841 6.1 MEDIUM
Network
mozilla firefox A Content-Security-Policy that blocks in-line scripts could be bypassed using an object tag to execute JavaScript in the protected document (cross-site scripting). This is a separate bypass from CVE-… CWE-79
Cross-site Scripting
CVE-2019-17001 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224842 6.1 MEDIUM
Network
mozilla firefox An object tag with a data URI did not correctly inherit the document's Content Security Policy. This allowed a CSP bypass in a cross-origin frame if the document's policy explicitly allowed data: URI… CWE-79
Cross-site Scripting
CVE-2019-17000 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224843 9.8 CRITICAL
Network
jamf jamf An issue was discovered in Jamf Pro 9.x and 10.x before 10.15.1. Deserialization of untrusted data when parsing JSON in several APIs may cause Denial of Service (DoS), remote code execution (RCE), an… CWE-502
 Deserialization of Untrusted Data
CVE-2019-17076 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224844 5.4 MEDIUM
Network
tencent wechat This vulnerability allows remote attackers redirect users to an external resource on affected installations of Tencent WeChat Prior to 7.0.9. User interaction is required to exploit this vulnerabilit… CWE-601
Open Redirect
CVE-2019-17151 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224845 7.8 HIGH
Local
parallels parallels_desktop This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14.1.3 (45485). An attacker must first obtain the ability to … CWE-78
OS Command 
CVE-2019-17148 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224846 8.8 HIGH
Network
tp-link tl-wr841n_firmware This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-LINK TL-WR841N routers. Authentication is not required to exploit this vulnerability. The specific… CWE-120
Classic Buffer Overflow
CVE-2019-17147 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224847 9.8 CRITICAL
Network
dlink dcs-935l_firmware
dcs-960l_firmware
This vulnerability allows remote attackers to execute arbitrary code on affected installations of D-Link DCS-960L v1.07.102. Authentication is not required to exploit this vulnerability. The specific… CWE-306
Missing Authentication for Critical Function
CVE-2019-17146 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224848 6.1 MEDIUM
Network
open-xchange open-xchange_appsuite OX App Suite through 7.10.2 has XSS. CWE-79
Cross-site Scripting
CVE-2019-16717 2024-11-21 13:31 2020-01-7 Show GitHub Exploit DB Packet Storm
224849 6.6 MEDIUM
Network
open-xchange open-xchange_appsuite OX App Suite through 7.10.2 has Incorrect Access Control. CWE-276
Incorrect Default Permissions 
CVE-2019-16716 2024-11-21 13:31 2020-01-7 Show GitHub Exploit DB Packet Storm
224850 8.8 HIGH
Network
tiny_file_manager_project tiny_file_manager In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only authenticated users are impacted. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-16790 2024-11-21 13:31 2019-12-31 Show GitHub Exploit DB Packet Storm