Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 12:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256491 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Plan In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0863 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
256492 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Place In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0864 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
256493 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Markdown Optimization コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0862 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
256494 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Thesaurus Management System コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0875 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
256495 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Clinical Remote Data Capture Option コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0876 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
256496 4.3 警告 オラクル - Oracle Industry Product Suite の Communications - Oracle Communications Unified Inventory Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0874 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
256497 4 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0879 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
256498 4 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0878 2010-05-13 15:11 2010-04-13 Show GitHub Exploit DB Packet Storm
256499 5 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0877 2010-05-13 15:11 2010-04-13 Show GitHub Exploit DB Packet Storm
256500 4 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0880 2010-05-13 15:11 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
225401 4.9 MEDIUM
Network
gilacms gila_cms Gila CMS before 1.11.1 allows admin/fm/?f=../ directory traversal, leading to Local File Inclusion. CWE-22
Path Traversal
CVE-2019-16679 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225402 6.5 MEDIUM
Network
yzmcms yzmcms admin/urlrule/add.html in YzmCMS 5.3 allows CSRF with a resultant denial of service by adding a superseding route. CWE-352
 Origin Validation Error
CVE-2019-16678 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225403 6.5 MEDIUM
Network
idreamsoft icms An issue was discovered in idreamsoft iCMS V7.0. admincp.php?app=members&do=del allows CSRF. CWE-352
 Origin Validation Error
CVE-2019-16677 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225404 5.3 MEDIUM
Network
pagekit pagekit The Reset Password feature in Pagekit 1.0.17 gives a different response depending on whether the e-mail address of a valid user account is entered, which might make it easier for attackers to enumera… CWE-203
 Information Exposure Through Discrepancy
CVE-2019-16669 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225405 6.1 MEDIUM
Network
thinksaas thinksaas An issue was discovered in ThinkSAAS 2.91. There is XSS via the content to the index.php?app=group&ac=comment&ts=do&js=1 URI, as demonstrated by a crafted SVG document in the SRC attribute of an EMBE… CWE-79
Cross-site Scripting
CVE-2019-16665 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225406 4.8 MEDIUM
Network
thinksaas thinksaas An issue was discovered in ThinkSAAS 2.91. There is XSS via the index.php?app=group&ac=create&ts=do groupname parameter. CWE-79
Cross-site Scripting
CVE-2019-16664 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225407 5.4 MEDIUM
Network
digimute ogma_cms Ogma CMS 0.5 has XSS via creation of a new blog. CWE-79
Cross-site Scripting
CVE-2019-16661 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225408 8.8 HIGH
Network
joyplus_project joyplus joyplus-cms 1.6.0 has admin_ajax.php?action=savexml&tab=vodplay CSRF. CWE-352
 Origin Validation Error
CVE-2019-16660 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225409 8.8 HIGH
Network
tuzicms tuzicms TuziCMS 2.0.6 has index.php/manage/link/do_add CSRF. CWE-352
 Origin Validation Error
CVE-2019-16659 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm
225410 8.8 HIGH
Network
tuzicms tuzicms TuziCMS 2.0.6 has index.php/manage/notice/do_add CSRF. CWE-352
 Origin Validation Error
CVE-2019-16658 2024-11-21 13:30 2019-09-22 Show GitHub Exploit DB Packet Storm