Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241231 4.3 警告 The Cacti Group - Red Hat HPC Solution などの製品で使用される Cacti の utilities.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2544 2012-06-26 16:19 2010-08-23 Show GitHub Exploit DB Packet Storm
241232 4.3 警告 The Cacti Group - Cacti の include/top_graph_header.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2543 2012-06-26 16:19 2010-08-23 Show GitHub Exploit DB Packet Storm
241233 4.3 警告 adjam - rekonq におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2536 2012-06-26 16:19 2010-08-2 Show GitHub Exploit DB Packet Storm
241234 7.5 危険 2daybiz - 2daybiz MLM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2516 2012-06-26 16:19 2010-06-29 Show GitHub Exploit DB Packet Storm
241235 6.8 警告 dacian strain
Joomla!
- Joomla! 用の JFaq コンポーネントの index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2515 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
241236 4.3 警告 dacian strain
Joomla!
- Joomla! 用の JFaq コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2514 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
241237 7.5 危険 2daybiz - 2daybiz Matrimonial Script の customprofile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2512 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
241238 7.5 危険 2daybiz - 2daybiz MLM Software の viewnews.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2511 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
241239 7.5 危険 2daybiz - 2daybiz Web Template Software の customize.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2510 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
241240 4.3 警告 2daybiz - 2daybiz Web Template Software におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2509 2012-06-26 16:19 2010-06-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268641 7.5 HIGH
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface denial of service NVD-CWE-noinfo
CVE-2016-1000215 2024-11-21 11:43 2016-10-25 Show GitHub Exploit DB Packet Storm
268642 5.3 MEDIUM
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface authentication bypass CWE-287
CWE-200
Improper Authentication
Information Exposure
CVE-2016-1000214 2024-11-21 11:43 2016-10-25 Show GitHub Exploit DB Packet Storm
268643 8.8 HIGH
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface authenticated command injection CWE-78
OS Command 
CVE-2016-1000216 2024-11-21 11:43 2016-10-11 Show GitHub Exploit DB Packet Storm
268644 9.8 CRITICAL
Network
zotpress_project zotpress Zotpress plugin for WordPress SQLi in zp_get_account() CWE-89
SQL Injection
CVE-2016-1000217 2024-11-21 11:43 2016-10-6 Show GitHub Exploit DB Packet Storm
268645 7.5 HIGH
Network
mb.miniaudioplayer_project mb.miniaudioplayer WordPress Plugin mb.miniAudioPlayer-an HTML5 audio player for your mp3 files is prone to multiple vulnerabilities, including open proxy and security bypass vulnerabilities because it fails to properl… CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2016-0796 2024-11-21 11:42 2022-07-29 Show GitHub Exploit DB Packet Storm
268646 5.3 MEDIUM
Network
twistedmatrix twisted Twisted before 16.3.1 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP_PR… CWE-425
 Direct Request ('Forced Browsing')
CVE-2016-1000111 2024-11-21 11:42 2020-03-12 Show GitHub Exploit DB Packet Storm
268647 5.3 MEDIUM
Network
facebook hhvm HHVM does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP_PROXY environment v… CWE-665
 Improper Initialization
CVE-2016-1000109 2024-11-21 11:42 2020-02-19 Show GitHub Exploit DB Packet Storm
268648 9.8 CRITICAL
Network
facebook hhvm mcrypt_get_block_size did not enforce that the provided "module" parameter was a string, leading to type confusion if other types of data were passed in. This issue affects HHVM versions prior to 3.9… CWE-843
Type Confusion
CVE-2016-1000005 2024-11-21 11:42 2020-02-19 Show GitHub Exploit DB Packet Storm
268649 9.8 CRITICAL
Network
facebook hhvm Insufficient type checks were employed prior to casting input data in SimpleXMLElement_exportNode and simplexml_import_dom. This issue affects HHVM versions prior to 3.9.5, all versions between 3.10.… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2016-1000004 2024-11-21 11:42 2020-02-19 Show GitHub Exploit DB Packet Storm
268650 9.8 CRITICAL
Network
vmware spring_framework Pivotal Spring Framework through 5.3.16 suffers from a potential remote code execution (RCE) issue if used for Java deserialization of untrusted data. Depending on how the library is implemented with… CWE-502
 Deserialization of Untrusted Data
CVE-2016-1000027 2024-11-21 11:42 2020-01-3 Show GitHub Exploit DB Packet Storm