Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252941 2.6 注意 OTRS プロジェクト - OTRS の AgentTicketZoom におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4071 2012-03-27 18:42 2011-01-20 Show GitHub Exploit DB Packet Storm
252942 6.8 警告 ヒューレット・パッカード - HP HP-UX におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-4108 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
252943 7.8 危険 ヒューレット・パッカード - 複数の HP プリンタ製品で使用される File System External Access 設定の PJL Access 値 のデフォルト設定における任意のファイルを読まれる脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4107 2012-03-27 18:42 2010-11-15 Show GitHub Exploit DB Packet Storm
252944 6.8 警告 ヒューレット・パッカード - HP Insight Control におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-4106 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252945 6.4 警告 ヒューレット・パッカード - HP Insight Orchestration におけるアクセス制限を回避する脆弱性 CWE-noinfo
情報不足
CVE-2010-4105 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252946 5 警告 ヒューレット・パッカード - HP Insight Orchestration における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2010-4104 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252947 5 警告 ヒューレット・パッカード - HP Insight Managed System Setup Wizard における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2010-4103 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252948 5 警告 ヒューレット・パッカード - HP Insight Recovery における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2010-4102 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252949 4.3 警告 ヒューレット・パッカード - HP Insight Recovery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4101 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
252950 5 警告 ヒューレット・パッカード - HP Insight Control Performance Management における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2010-4100 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220011 9.8 CRITICAL
Network
ez ez_publish-kernel
ez_publish-legacy
eZ Publish Kernel before 5.4.14.1, 6.x before 6.13.6.2, and 7.x before 7.5.6.2 and eZ Publish Legacy before 5.4.14.1, 2017 before 2017.12.7.2, and 2019 before 2019.03.4.2 allow remote attackers to ex… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-10806 2024-11-21 13:56 2020-03-23 Show GitHub Exploit DB Packet Storm
220012 5.4 MEDIUM
Network
phpmyadmin
debian
fedoraproject
opensuse
suse
phpmyadmin
debian_linux
fedora
leap
backports_sle
package_hub
In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was discovered where malicious code could be used to trigger an XSS attack through retrieving and displaying results… CWE-79
CWE-89
Cross-site Scripting
SQL Injection
CVE-2020-10803 2024-11-21 13:56 2020-03-22 Show GitHub Exploit DB Packet Storm
220013 8.0 HIGH
Network
phpmyadmin
debian
fedoraproject
opensuse
suse
phpmyadmin
debian_linux
fedora
leap
backports_sle
package_hub
In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability has been discovered where certain parameters are not properly escaped when generating certain queries for search act… CWE-89
SQL Injection
CVE-2020-10802 2024-11-21 13:56 2020-03-22 Show GitHub Exploit DB Packet Storm
220014 8.0 HIGH
Network
phpmyadmin
fedoraproject
opensuse
suse
phpmyadmin
fedora
leap
backports_sle
package_hub
In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was found in retrieval of the current username (in libraries/classes/Server/Privileges.php and libraries/classes/Use… CWE-89
SQL Injection
CVE-2020-10804 2024-11-21 13:56 2020-03-22 Show GitHub Exploit DB Packet Storm
220015 8.1 HIGH
Network
lix_project lix lix through 15.8.7 allows man-in-the-middle attackers to execute arbitrary code by modifying the HTTP client-server data stream so that the Location header is associated with attacker-controlled exec… NVD-CWE-noinfo
CVE-2020-10800 2024-11-21 13:56 2020-03-22 Show GitHub Exploit DB Packet Storm
220016 9.8 CRITICAL
Network
svglib_project svglib The svglib package through 0.9.3 for Python allows XXE attacks via an svg2rlg call. CWE-611
XXE
CVE-2020-10799 2024-11-21 13:56 2020-03-21 Show GitHub Exploit DB Packet Storm
220017 7.5 HIGH
Network
it-novum openitcockpit openITCOCKPIT through 3.7.2 allows remote attackers to configure the self::DEVELOPMENT or self::STAGING option by placing a hostname containing "dev" or "staging" in the HTTP Host header. CWE-276
Incorrect Default Permissions 
CVE-2020-10792 2024-11-21 13:56 2020-03-21 Show GitHub Exploit DB Packet Storm
220018 8.8 HIGH
Network
suse rancher In Rancher 2.x before 2.6.13 and 2.7.x before 2.7.4, an incorrectly applied authorization check allows users who have certain access to a namespace to move that namespace to a different project. CWE-863
 Incorrect Authorization
CVE-2020-10676 2024-11-21 13:55 2023-12-13 Show GitHub Exploit DB Packet Storm
220019 8.1 HIGH
Network
fasterxml
oracle
jackson-databind
retail_merchandising_system
retail_sales_audit
A deserialization flaw was discovered in jackson-databind through 2.9.10.4. It could allow an unauthenticated user to perform code execution via ignite-jta or quartz-core: org.apache.ignite.cache.jta… CWE-502
 Deserialization of Untrusted Data
CVE-2020-10650 2024-11-21 13:55 2022-12-27 Show GitHub Exploit DB Packet Storm
220020 7.5 HIGH
Network
python
redhat
fedoraproject
python
enterprise_linux
software_collections
quay
fedora
A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for… CWE-704
 Incorrect Type Conversion or Cast
CVE-2020-10735 2024-11-21 13:55 2022-09-9 Show GitHub Exploit DB Packet Storm