Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253371 4.3 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0768 2010-05-27 17:25 2010-04-1 Show GitHub Exploit DB Packet Storm
253372 4 警告 IBM - IBM WebSphere Application Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0770 2010-05-27 17:25 2010-04-1 Show GitHub Exploit DB Packet Storm
253373 5 警告 IBM - IBM WebSphere Application Server (WAS) の Administrative Console コンポーネントにおける WAS セッションの内容を読まれる脆弱性 CWE-200
情報漏えい
CVE-2009-1898 2010-05-27 17:24 2009-06-3 Show GitHub Exploit DB Packet Storm
253374 6.8 警告 サイバートラスト株式会社
レッドハット
- TeX Live 2009 および teTeX の dvipsk/dospecial.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1440 2010-05-26 16:33 2010-05-6 Show GitHub Exploit DB Packet Storm
253375 6.8 警告 サイバートラスト株式会社
レッドハット
- TeX Live および teTeX の predospecial 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0739 2010-05-26 16:32 2010-04-16 Show GitHub Exploit DB Packet Storm
253376 9.3 危険 アドビシステムズ - Adobe Photoshop CS4 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1279 2010-05-26 16:32 2010-04-30 Show GitHub Exploit DB Packet Storm
253377 9.3 危険 レッドハット
freedesktop.org
サイバートラスト株式会社
Glyph & Cog, LLC
- Xpdf および Poppler の ObjectStream::ObjectStream 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3608 2010-05-26 16:31 2009-10-15 Show GitHub Exploit DB Packet Storm
253378 6.8 警告 サイバートラスト株式会社
レッドハット
CUPS
- CUPS の pdftops フィルタにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-0791 2010-05-26 16:30 2009-06-3 Show GitHub Exploit DB Packet Storm
253379 6.8 警告 レッドハット
Glyph & Cog, LLC
サイバートラスト株式会社
CUPS
- Xpdf および CUPS におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0195 2010-05-26 16:30 2009-04-16 Show GitHub Exploit DB Packet Storm
253380 4.3 警告 Glyph & Cog, LLC
freedesktop.org
日本電気
サイバートラスト株式会社
CUPS
レッドハット
- JBIG2 MMR デコーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-1183 2010-05-26 16:30 2009-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200421 7.8 HIGH
Local
php
debian
fedoraproject
drupal
archive_tar
debian_linux
fedora
drupal
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked. CWE-502
 Deserialization of Untrusted Data
CVE-2020-28948 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200422 5.5 MEDIUM
Local
linux
fedoraproject
debian
linux_kernel
fedora
debian_linux
An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linux kernel through 5.9.9. Local attackers on systems with the speakup driver could cause a local denial of service attack… CWE-763
 Release of Invalid Pointer or Reference
CVE-2020-28941 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200423 6.1 MEDIUM
Network
misp misp In MISP 2.4.134, XSS exists in the template element index view because the id parameter is mishandled. CWE-79
Cross-site Scripting
CVE-2020-28947 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200424 4.3 MEDIUM
Network
primekey ejbca An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol. As a part of EJBCA's domain security model, the peer connector allows the r… CWE-295
Improper Certificate Validation 
CVE-2020-28942 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
200425 6.1 MEDIUM
Network
palletsprojects werkzeug Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL. CWE-601
Open Redirect
CVE-2020-28724 2024-11-21 14:23 2020-11-19 Show GitHub Exploit DB Packet Storm
200426 6.5 MEDIUM
Network
view_frontend_statistics_project view_frontend_statistics An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves all GET and POST data of TYPO3 frontend requests to the database. Depending on… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-28917 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200427 5.8 MEDIUM
Physics
linux linux_kernel A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def. CWE-125
Out-of-bounds Read
CVE-2020-28915 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200428 7.1 HIGH
Local
katacontainers kata-containers An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the f… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-28914 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
200429 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28688 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm
200430 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28687 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm