Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253041 4.3 警告 アップル - Apple Safari におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1778 2010-08-20 18:24 2010-07-30 Show GitHub Exploit DB Packet Storm
253042 7.5 危険 金子 勇 - Winny におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2360 2010-08-20 12:02 2010-08-20 Show GitHub Exploit DB Packet Storm
253043 7.5 危険 金子 勇 - Winny におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2360 2010-08-20 12:02 2010-08-20 Show GitHub Exploit DB Packet Storm
253044 5 警告 金子 勇 - Winny におけるノード情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2362 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
253045 5 警告 金子 勇 - Winny における BBS 情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2361 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
253046 10 危険 シマンテック
IBM
- Autonomy KeyView Filter SDK の kvolefio.dll における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3032 2010-08-19 18:22 2010-03-5 Show GitHub Exploit DB Packet Storm
253047 5 警告 The PHP Group - PHP の phar 拡張における重要な情報を取得される脆弱性 CWE-134
書式文字列の問題
CVE-2010-2094 2010-08-18 18:26 2010-05-14 Show GitHub Exploit DB Packet Storm
253048 7.5 危険 The PHP Group - PHP の sqlite_single_query および sqlite_array_query 関数における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1868 2010-08-18 18:26 2010-05-7 Show GitHub Exploit DB Packet Storm
253049 7.5 危険 The PHP Group - PHP の dechunk フィルタにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-1866 2010-08-18 18:26 2010-05-2 Show GitHub Exploit DB Packet Storm
253050 5 警告 The PHP Group - PHP の chunk_split 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1862 2010-08-18 18:25 2010-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200331 7.8 HIGH
Local
php
debian
fedoraproject
drupal
archive_tar
debian_linux
fedora
drupal
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked. CWE-502
 Deserialization of Untrusted Data
CVE-2020-28948 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200332 5.5 MEDIUM
Local
linux
fedoraproject
debian
linux_kernel
fedora
debian_linux
An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linux kernel through 5.9.9. Local attackers on systems with the speakup driver could cause a local denial of service attack… CWE-763
 Release of Invalid Pointer or Reference
CVE-2020-28941 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200333 6.1 MEDIUM
Network
misp misp In MISP 2.4.134, XSS exists in the template element index view because the id parameter is mishandled. CWE-79
Cross-site Scripting
CVE-2020-28947 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200334 4.3 MEDIUM
Network
primekey ejbca An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol. As a part of EJBCA's domain security model, the peer connector allows the r… CWE-295
Improper Certificate Validation 
CVE-2020-28942 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200335 6.1 MEDIUM
Network
palletsprojects werkzeug Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL. CWE-601
Open Redirect
CVE-2020-28724 2024-11-21 14:23 2020-11-19 Show GitHub Exploit DB Packet Storm
200336 6.5 MEDIUM
Network
view_frontend_statistics_project view_frontend_statistics An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves all GET and POST data of TYPO3 frontend requests to the database. Depending on… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-28917 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200337 5.8 MEDIUM
Physics
linux linux_kernel A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def. CWE-125
Out-of-bounds Read
CVE-2020-28915 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200338 7.1 HIGH
Local
katacontainers kata-containers An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the f… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-28914 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200339 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28688 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm
200340 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28687 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm