Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255871 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1989 2010-09-27 16:17 2010-05-20 Show GitHub Exploit DB Packet Storm
255872 9.3 危険 Opera Software ASA - Windows および Mac OS X 上で稼働する Opera における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-1728 2010-09-27 16:17 2010-04-30 Show GitHub Exploit DB Packet Storm
255873 10 危険 Opera Software ASA - Opera における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1349 2010-09-27 16:17 2010-04-12 Show GitHub Exploit DB Packet Storm
255874 5 警告 Opera Software ASA - Opera における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1310 2010-09-27 16:16 2010-03-22 Show GitHub Exploit DB Packet Storm
255875 4.3 警告 Opera Software ASA - Opera における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0653 2010-09-27 16:16 2010-02-18 Show GitHub Exploit DB Packet Storm
255876 10 危険 Opera Software ASA - Opera における脆弱性 CWE-noinfo
情報不足
CVE-2009-4072 2010-09-27 16:16 2009-11-23 Show GitHub Exploit DB Packet Storm
255877 5.8 警告 Opera Software ASA - Opera におけるクロスサイトスクリプティングの脆弱性 CWE-16
環境設定
CVE-2009-4071 2010-09-27 16:16 2009-11-24 Show GitHub Exploit DB Packet Storm
255878 5.8 警告 Opera Software ASA - Windows 上で稼働する Opera におけるアドレスフィールドを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2009-3832 2010-09-27 16:16 2009-10-28 Show GitHub Exploit DB Packet Storm
255879 5 警告 Opera Software ASA - Opera におけるフィッシング攻撃の脆弱性 CWE-Other
その他
CVE-2009-3049 2010-09-27 16:15 2009-09-1 Show GitHub Exploit DB Packet Storm
255880 4.3 警告 Opera Software ASA - Opera における意図しないファイルをアップロードさせられる脆弱性 CWE-20
不適切な入力確認
CVE-2009-3048 2010-09-27 16:15 2009-09-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214741 5.4 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In affected versions of WordPress, files with a specially crafted name when uploaded to the Media section can lead to script execution upon accessing the file. This requires an authenticated user wit… CWE-79
Cross-site Scripting
CVE-2020-11026 2024-11-21 13:56 2020-05-1 Show GitHub Exploit DB Packet Storm
214742 8.8 HIGH
Network
intelmq_manager_project intelmq_manager IntelMQ Manager from version 1.1.0 and before version 2.1.1 has a vulnerability where the backend incorrectly handled messages given by user-input in the "send" functionality of the Inspect-tool of t… CWE-78
OS Command 
CVE-2020-11016 2024-11-21 13:56 2020-05-1 Show GitHub Exploit DB Packet Storm
214743 5.4 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In affected versions of WordPress, a cross-site scripting (XSS) vulnerability in the navigation section of Customizer allows JavaScript code to be executed. Exploitation requires an authenticated use… CWE-79
Cross-site Scripting
CVE-2020-11025 2024-11-21 13:56 2020-05-1 Show GitHub Exploit DB Packet Storm
214744 9.1 CRITICAL
Network
thinx-device-api_project thinx-device-api A vulnerability has been disclosed in thinx-device-api IoT Device Management Server before version 2.5.0. Device MAC address can be spoofed. This means initial registration requests without UDID and … - CVE-2020-11015 2024-11-21 13:56 2020-05-1 Show GitHub Exploit DB Packet Storm
214745 8.2 HIGH
Network
moonlight-stream moonlight In Moonlight iOS/tvOS before 4.0.1, the pairing process is vulnerable to a man-in-the-middle attack. The bug has been fixed in Moonlight v4.0.1 for iOS and tvOS. CWE-200
Information Exposure
CVE-2020-11024 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214746 9.8 CRITICAL
Network
faye_project faye Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass c… CWE-287
Improper Authentication
CVE-2020-11020 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214747 6.1 MEDIUM
Network
jquery
debian
fedoraproject
drupal
oracle
netapp
tenable
jquery
debian_linux
fedora
drupal
weblogic_server
hyperion_financial_reporting
webcenter_sites
application_testing_suite
communications_operations_monitor
communications_in…
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation m… - CVE-2020-11023 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214748 7.5 HIGH
Network
http-client_project http-client Actions Http-Client (NPM @actions/http-client) before version 1.0.8 can disclose Authorization headers to incorrect domain in certain redirect scenarios. The conditions in which this happens are if c… NVD-CWE-noinfo
CVE-2020-11021 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214749 6.5 MEDIUM
Network
pagerduty rundeck In Rundeck before version 3.2.6, authenticated users can craft a request that reveals Execution data and logs and Job details that they are not authorized to see. Depending on the configuration and t… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-11009 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214750 6.1 MEDIUM
Network
netgate pfsense An XSS vulnerability resides in the hostname field of the diag_ping.php page in pfsense before 2.4.5 version. After passing inputs to the command and executing this command, the $result variable is n… CWE-79
Cross-site Scripting
CVE-2020-10797 2024-11-21 13:56 2020-04-29 Show GitHub Exploit DB Packet Storm