Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255271 5.8 警告 オラクル - Oracle E-Business Suite の Oracle iStore コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0868 2010-05-12 15:19 2010-04-13 Show GitHub Exploit DB Packet Storm
255272 6.4 警告 オラクル - Oracle E-Business Suite の Oracle Application Object Library コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0859 2010-05-12 15:19 2010-04-13 Show GitHub Exploit DB Packet Storm
255273 4.3 警告 オラクル - Oracle Collaboration Suite の User Interface コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0881 2010-05-12 15:19 2010-04-13 Show GitHub Exploit DB Packet Storm
255274 4.3 警告 オラクル - Oracle Fusion Middleware の Portal コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0855 2010-05-12 15:19 2010-04-13 Show GitHub Exploit DB Packet Storm
255275 4.3 警告 オラクル - Oracle Fusion Middleware の Portal コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0086 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
255276 5 警告 オラクル - Oracle Fusion Middleware の Portal コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0856 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
255277 5 警告 オラクル - Oracle Fusion Middleware の Oracle Internet Directory コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0872 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
255278 2.1 注意 オラクル - Oracle Database の Audit コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0854 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
255279 3.6 注意 オラクル - Oracle Database の Change Data Capture コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0870 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
255280 4 警告 オラクル - Oracle Database の XML DB コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0851 2010-05-12 15:17 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197691 7.8 HIGH
Local
schneider-electric operator_terminal_expert_runtime A CWE-269 Improper Privilege Management vulnerability exists in EcoStruxureª Operator Terminal Expert runtime (Vijeo XD) that could cause privilege escalation on the workstation when interacting dire… - CVE-2020-7544 2024-11-21 14:37 2020-11-20 Show GitHub Exploit DB Packet Storm
197692 7.5 HIGH
Network
schneider-electric ecostruxure_control_expert A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC… - CVE-2020-7538 2024-11-21 14:37 2020-11-20 Show GitHub Exploit DB Packet Storm
197693 8.8 HIGH
Network
schneider-electric modicon_tsxety4103_firmware
modicon_tsxety5103_firmware
modicon_tsxp574634_firmware
modicon_tsxp575634_firmware
modicon_tsxp576634_firmware
modicon_quantum_140noe77101_firmware
modi…
A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their C… - CVE-2020-7564 2024-11-21 14:37 2020-11-18 Show GitHub Exploit DB Packet Storm
197694 8.8 HIGH
Network
schneider-electric modicon_tsxety4103_firmware
modicon_tsxety5103_firmware
modicon_tsxp574634_firmware
modicon_tsxp575634_firmware
modicon_tsxp576634_firmware
modicon_quantum_140noe77101_firmware
modi…
A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details)… - CVE-2020-7563 2024-11-21 14:37 2020-11-18 Show GitHub Exploit DB Packet Storm
197695 8.1 HIGH
Network
schneider-electric modicon_tsxety4103_firmware
modicon_tsxety5103_firmware
modicon_tsxp574634_firmware
modicon_tsxp575634_firmware
modicon_tsxp576634_firmware
modicon_quantum_140noe77101_firmware
modi…
A CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) … - CVE-2020-7562 2024-11-21 14:37 2020-11-18 Show GitHub Exploit DB Packet Storm
197696 8.8 HIGH
Network
tobesoft xplatform Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto:// CWE-20
 Improper Input Validation 
CVE-2020-7841 2024-11-21 14:37 2020-11-17 Show GitHub Exploit DB Packet Storm
197697 9.8 CRITICAL
Network
y18n_project
oracle
siemens
y18n
graalvm
sinec_infrastructure_network_services
The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-7774 2024-11-21 14:37 2020-11-17 Show GitHub Exploit DB Packet Storm
197698 6.1 MEDIUM
Network
markdown-it-highlightjs_project markdown-it-highlightjs This affects the package markdown-it-highlightjs before 3.3.1. It is possible insert malicious JavaScript as a value of lang in the markdown-it-highlightjs Inline code highlighting feature. const mar… CWE-79
Cross-site Scripting
CVE-2020-7773 2024-11-21 14:37 2020-11-16 Show GitHub Exploit DB Packet Storm
197699 5.3 MEDIUM
Network
google firebase\/util This affects the package @firebase/util before 0.3.4. This vulnerability relates to the deepExtend function within the DeepCopy.ts file. Depending on if user input is provided, an attacker can overwr… NVD-CWE-noinfo
CVE-2020-7765 2024-11-21 14:37 2020-11-16 Show GitHub Exploit DB Packet Storm
197700 9.8 CRITICAL
Network
doc-path_project doc-path This affects the package doc-path before 2.1.2. NVD-CWE-noinfo
CVE-2020-7772 2024-11-21 14:37 2020-11-16 Show GitHub Exploit DB Packet Storm