Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253181 4.3 警告 Symphony CMS - Symphony CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3457 2012-03-27 18:42 2010-09-17 Show GitHub Exploit DB Packet Storm
253182 5 警告 energyscripts - ES Simple Download の download.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3456 2012-03-27 18:42 2010-09-17 Show GitHub Exploit DB Packet Storm
253183 4.3 警告 ATutor - AChecker の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3455 2012-03-27 18:42 2010-09-17 Show GitHub Exploit DB Packet Storm
253184 6.8 警告 FFmpeg
mplayerhq
- MPlayer などの製品で使用される FFmpeg の flicvideo.c における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-3429 2012-03-27 18:42 2010-09-30 Show GitHub Exploit DB Packet Storm
253185 7.5 危険 Intermesh - Intermesh Group-Office の modules/notes/json.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3428 2012-03-27 18:42 2010-09-16 Show GitHub Exploit DB Packet Storm
253186 4.3 警告 Open Classifieds - Open Classifieds におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3427 2012-03-27 18:42 2010-09-16 Show GitHub Exploit DB Packet Storm
253187 7.5 危険 4you-studio - Joomla! 用の Alpha の JPhone (com_jphone) コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3426 2012-03-27 18:42 2010-09-16 Show GitHub Exploit DB Packet Storm
253188 4.3 警告 SmarterTools Inc. - SmarterStats の UserControls/Popups/frmHelp.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3425 2012-03-27 18:42 2010-09-16 Show GitHub Exploit DB Packet Storm
253189 4.3 警告 Invision Power Services, Inc - IP.Board の admin/sources/classes/bbcode/custom/defaults.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3424 2012-03-27 18:42 2010-09-7 Show GitHub Exploit DB Packet Storm
253190 7.5 危険 freka - Drupal の Yr Weatherdata モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3423 2012-03-27 18:42 2010-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194981 7.8 HIGH
Local
tianocore edk_ii BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE. CWE-763
 Release of Invalid Pointer or Reference
CVE-2021-28216 2024-11-21 14:59 2021-08-6 Show GitHub Exploit DB Packet Storm
194982 4.8 MEDIUM
Network
open-xchange open-xchange_documents OX Documents before 7.10.5-rev5 has Incorrect Access Control for documents that contain XML structures because hash collisions can occur, due to use of CRC32. CWE-326
Inadequate Encryption Strength
CVE-2021-28095 2024-11-21 14:59 2021-07-30 Show GitHub Exploit DB Packet Storm
194983 6.5 MEDIUM
Network
open-xchange open-xchange_documents OX Documents before 7.10.5-rev7 has Incorrect Access Control for converted documents because hash collisions can occur, due to use of CRC32. CWE-326
Inadequate Encryption Strength
CVE-2021-28094 2024-11-21 14:59 2021-07-30 Show GitHub Exploit DB Packet Storm
194984 6.5 MEDIUM
Network
open-xchange open-xchange_documents OX Documents before 7.10.5-rev5 has Incorrect Access Control of converted images because hash collisions can occur, due to use of Adler32. CWE-326
Inadequate Encryption Strength
CVE-2021-28093 2024-11-21 14:59 2021-07-30 Show GitHub Exploit DB Packet Storm
194985 7.5 HIGH
Network
apache impala Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user. However, these secrets appear in the Impala logs, therefore Impala users with access to the logs… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2021-28131 2024-11-21 14:59 2021-07-22 Show GitHub Exploit DB Packet Storm
194986 8.8 HIGH
Network
centreon centreon An issue was discovered in Centreon-Web in Centreon Platform 20.10.0. A SQL injection vulnerability in "Configuration > Users > Contacts / Users" allows remote authenticated users to execute arbitrar… CWE-89
SQL Injection
CVE-2021-28053 2024-11-21 14:59 2021-07-17 Show GitHub Exploit DB Packet Storm
194987 5.4 MEDIUM
Network
centreon centreon An issue was discovered in Centreon-Web in Centreon Platform 20.10.0. A Stored Cross-Site Scripting (XSS) issue in "Configuration > Hosts" allows remote authenticated users to inject arbitrary web sc… CWE-79
Cross-site Scripting
CVE-2021-28054 2024-11-21 14:59 2021-07-17 Show GitHub Exploit DB Packet Storm
194988 5.4 MEDIUM
Network
froala froala_editor Froala WYSIWYG Editor 3.2.6-1 is affected by XSS due to a namespace confusion during parsing. CWE-79
Cross-site Scripting
CVE-2021-28114 2024-11-21 14:59 2021-07-16 Show GitHub Exploit DB Packet Storm
194989 5.4 MEDIUM
Network
phpgurukul teachers_record_management_system A stored cross-site scripting (XSS) vulnerability in Teachers Record Management System 1.0 allows remote authenticated users to inject arbitrary web script or HTML via the 'email' POST parameter in a… CWE-79
Cross-site Scripting
CVE-2021-28424 2024-11-21 14:59 2021-07-2 Show GitHub Exploit DB Packet Storm
194990 8.8 HIGH
Network
phpgurukul teachers_record_management_system Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 allow remote authenticated users to execute arbitrary SQL commands via the 'editid' GET parameter in edit-subjects-deta… CWE-89
SQL Injection
CVE-2021-28423 2024-11-21 14:59 2021-07-2 Show GitHub Exploit DB Packet Storm