Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240851 4.3 警告 createch-group - LiSK CMS の cp/list_content.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2014 2012-06-26 16:19 2010-05-24 Show GitHub Exploit DB Packet Storm
240852 4.3 警告 createch-group - LiSK CMS の cp/edit_email.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2013 2012-06-26 16:19 2010-05-24 Show GitHub Exploit DB Packet Storm
240853 4.3 警告 Angry Donuts
Drupal
- Drupal の Chaos Tool Suite モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2010 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240854 9.3 危険 AB Team - BS.Global BS.Player のメディアライブラリにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2009 2012-06-26 16:19 2010-05-21 Show GitHub Exploit DB Packet Storm
240855 7.5 危険 datalifecms - DLE における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2005 2012-06-26 16:19 2010-05-20 Show GitHub Exploit DB Packet Storm
240856 9.3 危険 AB Team - BS.Global BS.Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2004 2012-06-26 16:19 2010-05-20 Show GitHub Exploit DB Packet Storm
240857 2.1 注意 Drupal
jeff warrington
- Drupal の Wordfilter モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2002 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
240858 6.8 警告 Joomla!
Fabrik
- Joomla! 用 Fabrik コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1981 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240859 6.8 警告 affiliatefeeds
Joomla!
- Joomla! 用の Affiliate Datafeeds コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1979 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240860 6.8 警告 freephpblogsoftware - FreePHPBlogSoftware の default_theme.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-1978 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267901 9.8 CRITICAL
Network
netgear wnr2000v5_firmware The NETGEAR WNR2000v5 router leaks its serial number when performing a request to the /BRS_netgear_success.html URI. This serial number allows a user to obtain the administrator username and password… CWE-200
Information Exposure
CVE-2016-10175 2024-11-21 11:43 2017-01-30 Show GitHub Exploit DB Packet Storm
267902 9.8 CRITICAL
Network
netgear wnr2000v5_firmware The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This special URL is handled by the embedded web server… CWE-20
 Improper Input Validation 
CVE-2016-10176 2024-11-21 11:43 2017-01-30 Show GitHub Exploit DB Packet Storm
267903 7.5 HIGH
Network
squid-cache squid Incorrect HTTP Request header comparison in Squid HTTP Proxy 3.5.0.1 through 3.5.22, and 4.0.1 through 4.0.16 results in Collapsed Forwarding feature mistakenly identifying some private responses as … CWE-697
 Incorrect Comparison
CVE-2016-10003 2024-11-21 11:43 2017-01-28 Show GitHub Exploit DB Packet Storm
267904 7.5 HIGH
Network
debian
squid-cache
debian_linux
squid
Incorrect processing of responses to If-None-Modified HTTP conditional requests in Squid HTTP Proxy 3.1.10 through 3.1.23, 3.2.0.3 through 3.5.22, and 4.0.1 through 4.0.16 leads to client-specific Co… CWE-200
Information Exposure
CVE-2016-10002 2024-11-21 11:43 2017-01-28 Show GitHub Exploit DB Packet Storm
267905 5.5 MEDIUM
Local
xen
citrix
xen
xenserver
VMFUNC emulation in Xen 4.6.x through 4.8.x on x86 systems using AMD virtualization extensions (aka SVM) allows local HVM guest OS users to cause a denial of service (hypervisor crash) by leveraging … CWE-476
 NULL Pointer Dereference
CVE-2016-10025 2024-11-21 11:43 2017-01-27 Show GitHub Exploit DB Packet Storm
267906 6.0 MEDIUM
Local
xen
citrix
xen
xenserver
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kern… CWE-20
 Improper Input Validation 
CVE-2016-10024 2024-11-21 11:43 2017-01-27 Show GitHub Exploit DB Packet Storm
267907 7.8 HIGH
Local
xen xen Xen through 4.8.x allows local 64-bit x86 HVM guest OS users to gain privileges by leveraging mishandling of SYSCALL singlestep during emulation. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10013 2024-11-21 11:43 2017-01-27 Show GitHub Exploit DB Packet Storm
267908 7.5 HIGH
Network
php php The php_wddx_pop_element function in ext/wddx/wddx.c in PHP 7.0.x before 7.0.15 and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application c… CWE-476
 NULL Pointer Dereference
CVE-2016-10162 2024-11-21 11:43 2017-01-25 Show GitHub Exploit DB Packet Storm
267909 7.5 HIGH
Network
php php The object_common1 function in ext/standard/var_unserializer.c in PHP before 5.6.30, 7.0.x before 7.0.15, and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (buffer over-read… CWE-125
Out-of-bounds Read
CVE-2016-10161 2024-11-21 11:43 2017-01-25 Show GitHub Exploit DB Packet Storm
267910 9.8 CRITICAL
Network
php
netapp
debian
php
clustered_data_ontap
debian_linux
Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackers to cause a denial of service (memory corruption) or possib… CWE-193
 Off-by-one Error
CVE-2016-10160 2024-11-21 11:43 2017-01-25 Show GitHub Exploit DB Packet Storm