Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230031 3.5 注意 hashmarkconsulting - Drupal 用の Control Panel モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1108 2012-09-25 17:38 2010-01-10 Show GitHub Exploit DB Packet Storm
230032 5 警告 mesadynamics - Stainless における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1103 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230033 5 警告 omnigroup - OmniWeb における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1102 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230034 5 警告 icab - Alexander Clauss iCab における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1101 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230035 7.1 危険 マイクロソフト - Internet Explorer などで使用される ANI パーサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1098 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230036 4.3 警告 jan schutze - TRUC の login_reset_password_page.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1095 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230037 7.5 危険 miethner-scripting - DZ EROTIK Auktionshaus V4rgo の news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1094 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
230038 4.3 警告 openinferno - OI.Blogs におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1082 2012-09-25 17:38 2010-03-23 Show GitHub Exploit DB Packet Storm
230039 7.5 危険 joshprakash - Joomla! 用の jEmbed-Embed Anything コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1073 2012-09-25 17:38 2010-03-23 Show GitHub Exploit DB Packet Storm
230040 7.5 危険 imagoscripts - ImagoScripts Deviant Art Clone の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1070 2012-09-25 17:38 2010-03-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
81 - - - Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via Network Report. This issue affects Pandora FMS: from 777 through 800 New CWE-78
OS Command 
CVE-2026-30806 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
82 - - - Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via WebServerModuleDebug. This issue affects Pandora FMS: from 777 through 800 New CWE-78
OS Command 
CVE-2026-30809 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
83 - - - Missing Authorization vulnerability allows Exposure of Sensitive Information via configuration endpoint. This issue affects Pandora FMS: from 777 through 800 New CWE-276
Incorrect Default Permissions 
CVE-2026-30811 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
84 - - - Improper Neutralization of Input During Web Page Generation vulnerability allows Stored Cross-Site Scripting via event comments. This issue affects Pandora FMS: from 777 through 800 New CWE-79
Cross-site Scripting
CVE-2026-30812 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
85 - - - Improper Neutralization of Special Elements used in an SQL Command vulnerability allows SQL Injection via module search. This issue affects Pandora FMS: from 777 through 800 New CWE-89
SQL Injection
CVE-2026-30813 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
86 - - - Improper Neutralization of Special Elements used in an SQL Command vulnerability allows SQL Injection via custom fields. This issue affects Pandora FMS: from 777 through 800 New CWE-89
SQL Injection
CVE-2026-34186 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
87 - - - Improper Neutralization of Special Elements used in an OS Command vulnerability allows OS Command Injection via Event Response execution. This issue affects Pandora FMS: from 777 through 800 New CWE-78
OS Command 
CVE-2026-34188 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
88 - - - Decidim is a participatory democracy framework. In versions below 0.30.5 and 0.31.0.rc1 through 0.31.0, a stored code execution vulnerability in the user name field allows a low-privileged attacker t… New CWE-79
Cross-site Scripting
CVE-2026-23891 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
89 4.0 MEDIUM
Network
- - An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame wit… New CWE-130
 Improper Handling of Length Parameter Inconsistency
CVE-2026-33555 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm
90 8.1 HIGH
Network
- - simple-git enables running native Git commands from JavaScript. Versions up to and including 3.31.1 allow execution of arbitrary commands through Git option manipulation, bypassing safety checks mean… New CWE-78
OS Command 
CVE-2026-28291 2026-04-18 00:38 2026-04-14 Show GitHub Exploit DB Packet Storm