Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257191 10 危険 日立
CA Technologies
- CA XOsoft におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1223 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
257192 5 警告 日立
CA Technologies
- CA XOsoft における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2010-1222 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
257193 5 警告 日立
CA Technologies
- CA XOsoft におけるユーザ名を列挙される脆弱性 CWE-287
不適切な認証
CVE-2010-1221 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
257194 6.8 警告 フェンリル株式会社 - ActiveGeckoBrowser における複数の脆弱性 CWE-Other
その他
CVE-2010-2420 2010-06-14 12:01 2010-06-14 Show GitHub Exploit DB Packet Storm
257195 6.8 警告 サン・マイクロシステムズ
GNU Project
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU tar および GNU cpio の rmt_read__ 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0624 2010-06-11 18:45 2010-03-15 Show GitHub Exploit DB Packet Storm
257196 3.5 注意 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0733 2010-06-9 16:54 2010-03-19 Show GitHub Exploit DB Packet Storm
257197 6.5 警告 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL の bitsubstr 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-0442 2010-06-9 16:54 2010-02-2 Show GitHub Exploit DB Packet Storm
257198 6.8 警告 アップル - Java の window drawing 実装における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2010-0539 2010-06-7 17:58 2010-05-18 Show GitHub Exploit DB Packet Storm
257199 6.8 警告 アップル - Apple Mac OS X 上で稼働する Java における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0538 2010-06-7 17:58 2010-05-18 Show GitHub Exploit DB Packet Storm
257200 6.5 警告 PostgreSQL.org
サイバートラスト株式会社
ターボリナックス
サン・マイクロシステムズ
レッドハット
- PostgreSQL におけるインデックスの処理に関する権限を取得される脆弱性 CWE-Other
その他
CVE-2009-4136 2010-06-7 16:48 2009-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208991 6.1 MEDIUM
Network
pescms pescms_team PESCMS Team 2.3.2 has multiple reflected XSS via the id parameter:?g=Team&m=Task&a=my&status=3&id=,?g=Team&m=Task&a=my&status=0&id=,?g=Team&m=Task&a=my&status=1&id=,?g=Team&m=Task&a=my&status=10&id= CWE-79
Cross-site Scripting
CVE-2020-28092 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208992 9.8 CRITICAL
Network
online_library_management_system_project online_library_management_system An Arbitrary File Upload in the Upload Image component in SourceCodester Online Library Management System 1.0 allows the user to conduct remote code execution via admin/borrower/index.php?view=add be… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28130 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208993 6.1 MEDIUM
Network
adrianmercurio gym_management_system Stored Cross-site scripting (XSS) vulnerability in SourceCodester Gym Management System 1.0 allows users to inject and store arbitrary JavaScript code in index.php?page=packages via vulnerable fields… CWE-79
Cross-site Scripting
CVE-2020-28129 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208994 8.8 HIGH
Network
phpgurukul tourism_management_system An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via admin/create-package.php vulnerable page. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28136 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208995 9.8 CRITICAL
Network
simple_grocery_store_sales_and_inventory_sales_project simple_grocery_store_sales_and_inventory_system An issue was discovered in SourceCodester Simple Grocery Store Sales And Inventory System 1.0. There was authentication bypass in web login functionality allows an attacker to gain client privileges … CWE-89
SQL Injection
CVE-2020-28133 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208996 9.8 CRITICAL
Network
online_clothing_store_project online_clothing_store SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28140 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208997 6.1 MEDIUM
Network
online_clothing_store_project online_clothing_store SourceCodester Online Clothing Store 1.0 is affected by a cross-site scripting (XSS) vulnerability via a Offer Detail field in offer.php. CWE-79
Cross-site Scripting
CVE-2020-28139 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208998 9.8 CRITICAL
Network
online_clothing_store_project online_clothing_store SourceCodester Online Clothing Store 1.0 is affected by a SQL Injection via the txtUserName parameter to login.php. CWE-89
SQL Injection
CVE-2020-28138 2024-11-21 14:22 2020-11-18 Show GitHub Exploit DB Packet Storm
208999 5.4 MEDIUM
Network
nagios nagios_xi Nagios XI before 5.7.5 is vulnerable to XSS in Account Information (Email field). CWE-79
Cross-site Scripting
CVE-2020-27991 2024-11-21 14:22 2020-11-17 Show GitHub Exploit DB Packet Storm
209000 5.4 MEDIUM
Network
nagios nagios_xi Nagios XI before 5.7.5 is vulnerable to XSS in the Deployment tool (add agent). CWE-79
Cross-site Scripting
CVE-2020-27990 2024-11-21 14:22 2020-11-17 Show GitHub Exploit DB Packet Storm