Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
260111 3.6 注意 オラクル - Oracle Database の Change Data Capture コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0870 2010-05-12 15:18 2010-04-13 Show GitHub Exploit DB Packet Storm
260112 4 警告 オラクル - Oracle Database の XML DB コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0851 2010-05-12 15:17 2010-04-13 Show GitHub Exploit DB Packet Storm
260113 4 警告 オラクル - Oracle Database の JavaVM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0867 2010-05-12 15:17 2010-04-13 Show GitHub Exploit DB Packet Storm
260114 5.5 警告 オラクル - Oracle Database の XML DB コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0852 2010-05-12 15:17 2010-04-13 Show GitHub Exploit DB Packet Storm
260115 6.5 警告 オラクル - Oracle Database の JavaVM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0866 2010-05-12 15:17 2010-04-13 Show GitHub Exploit DB Packet Storm
260116 7.1 危険 オラクル - Oracle Database の Core RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0860 2010-05-12 15:16 2010-04-13 Show GitHub Exploit DB Packet Storm
260117 7.5 危険 オラクル - 複数の Oracle 製品の Oracle Internet Directory コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0853 2010-05-12 15:16 2010-04-13 Show GitHub Exploit DB Packet Storm
260118 2.6 注意 シックス・アパート株式会社 - Movable Type におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1985 2010-05-12 12:01 2010-05-12 Show GitHub Exploit DB Packet Storm
260119 10 危険 日立 - 複数の EUR Form 製品 および EUR 製品における任意のコードが実行される脆弱性 CWE-noinfo
情報不足
- 2010-05-11 15:16 2010-03-31 Show GitHub Exploit DB Packet Storm
260120 6.4 警告 マイクロソフト - Microsoft Windows における ISATAP パケットの処理に関する IPv4 ソースアドレスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0812 2010-05-11 15:16 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211361 7.8 HIGH
Local
google android An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos990 chipsets) software. The S3K250AF Secure Element CC EAL 5+ chip allows attackers to execute arbitrary code and obtain sensitiv… CWE-120
Classic Buffer Overflow
CVE-2020-28341 2024-11-21 14:22 2020-11-8 Show GitHub Exploit DB Packet Storm
211362 9.8 CRITICAL
Network
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (FRP) via Secure Folder. The Samsung ID is SVE-2020… NVD-CWE-noinfo
CVE-2020-28340 2024-11-21 14:22 2020-11-8 Show GitHub Exploit DB Packet Storm
211363 8.8 HIGH
Network
collne welcart_e-commerce The usc-e-shop (aka Collne Welcart e-Commerce) plugin before 1.9.36 for WordPress allows Object Injection because of usces_unserialize. There is not a complete POP chain. CWE-502
 Deserialization of Untrusted Data
CVE-2020-28339 2024-11-21 14:22 2020-11-8 Show GitHub Exploit DB Packet Storm
211364 5.9 MEDIUM
Network
axios
siemens
axios
sinec_ins
Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-28168 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
211365 8.8 HIGH
Network
salesagility suitecrm SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting. In certain circumstances involving admin account takeover, logger_file_name can refer to … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28328 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
211366 5.3 MEDIUM
Network
digium
sangoma
certified_asterisk
asterisk
A res_pjsip_session crash was discovered in Asterisk Open Source 13.x before 13.37.1, 16.x before 16.14.1, 17.x before 17.8.1, and 18.x before 18.0.1. and Certified Asterisk before 16.8-cert5. Upon r… CWE-404
 Improper Resource Shutdown or Release
CVE-2020-28327 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
211367 7.5 HIGH
Network
mit
fedoraproject
netapp
oracle
kerberos_5
fedora
cloud_backup
snapcenter
oncommand_workflow_automation
oncommand_insight
active_iq_unified_manager
communications_offline_mediation_controller
mysql_server
MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via an ASN.1-encoded Kerberos message because the lib/krb5/asn.1/asn1_encode.c support for BER indefinite l… CWE-674
 Uncontrolled Recursion
CVE-2020-28196 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
211368 9.8 CRITICAL
Network
cellinx nvt_web_server Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side. NVD-CWE-Other
CVE-2020-28250 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
211369 6.1 MEDIUM
Network
joplin_project joplin Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note. CWE-79
Cross-site Scripting
CVE-2020-28249 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
211370 6.5 MEDIUM
Network
maxmind
debian
fedoraproject
libmaxminddb
debian_linux
fedora
libmaxminddb before 1.4.3 has a heap-based buffer over-read in dump_entry_data_list in maxminddb.c. CWE-125
Out-of-bounds Read
CVE-2020-28241 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm