Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242211 4.3 警告 2bits
Drupal
- Drupal の Currency Exchange モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1074 2012-06-26 16:19 2009-01-6 Show GitHub Exploit DB Packet Storm
242212 4.3 警告 chris wederka
TYPO3 Association
- TYPO3 の tgm_newsletter 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1025 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242213 7.5 危険 chris wederka
TYPO3 Association
- TYPO3 の tgm_newsletter 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1024 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242214 4.3 警告 georg ringer, patrick gaumond
TYPO3 Association
- TYPO3 の taskcenter_recent 拡張 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1023 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242215 4.3 警告 christian hennecke
TYPO3 Association
- TYPO3 の chsellector 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1008 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242216 5 警告 TYPO3 Association
chi hoang
- TYPO3 の Power Extension Manager 拡張における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1007 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242217 6.8 警告 eFront Learning - eFront の www/editor/tiny_mce/langs/language.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1003 2012-06-26 16:19 2010-03-19 Show GitHub Exploit DB Packet Storm
242218 7.1 危険 Free Download Manager.ORG - FDM におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0999 2012-06-26 16:19 2010-05-17 Show GitHub Exploit DB Packet Storm
242219 10 危険 Free Download Manager.ORG - FDM におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0998 2012-06-26 16:19 2010-05-17 Show GitHub Exploit DB Packet Storm
242220 3.5 注意 e107.org - e107 の 107_plugins/content/content_manager.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0997 2012-06-26 16:19 2010-04-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268761 8.1 HIGH
Network
openframe-image_project openframe-image openframe-image is an Openframe extension which adds support for images via fbi. openframe-image downloads data resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-310
Cryptographic Issues
CVE-2016-10616 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268762 8.1 HIGH
Network
curses_project curses curses is bindings for the native curses library, a full featured console IO library. curses downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to ca… CWE-310
Cryptographic Issues
CVE-2016-10615 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268763 8.1 HIGH
Network
httpsync_project httpsync httpsync is a port of libcurl to node.js. httpsync downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swappin… CWE-310
Cryptographic Issues
CVE-2016-10614 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268764 5.9 MEDIUM
Network
bionode bionode-sra bionode-sra is a Node.js wrapper for SRA Toolkit. bionode-sra downloads data resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-310
Cryptographic Issues
CVE-2016-10613 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268765 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-ie-canary is Internet Explorer bindings for DalekJS. dalek-browser-ie-canary downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to caus… CWE-310
Cryptographic Issues
CVE-2016-10612 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268766 8.1 HIGH
Network
unicode unicode-json unicode-json is a unicode lookup table. unicode-json before 2.0.0 downloads data resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-310
Cryptographic Issues
CVE-2016-10610 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268767 8.1 HIGH
Network
chromedriver126_project chromedriver126 chromedriver126 is chromedriver version 1.26 for linux OS. chromedriver126 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code ex… CWE-310
Cryptographic Issues
CVE-2016-10609 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268768 7.5 HIGH
Network
getrobot robot-js robot-js is a module for native system automation for node.js. robot-js downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execu… CWE-310
Cryptographic Issues
CVE-2016-10608 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268769 8.1 HIGH
Network
openframe-glslviewer_project openframe-glslviewer openframe-glsviewer is a Openframe extension which adds support for shaders via glslViewer. openframe-glsviewer downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It ma… CWE-310
Cryptographic Issues
CVE-2016-10607 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268770 8.1 HIGH
Network
grunt-webdriver-qunit_project grunt-webdriver-qunit grunt-webdriver-qunit is a grunt plugin to run qunit with webdriver in grunt grunt-webdriver-qunit downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible… CWE-310
Cryptographic Issues
CVE-2016-10606 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm