Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242321 5.8 警告 Debian - dpkg の dpkg-source コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0396 2012-06-26 16:19 2010-03-10 Show GitHub Exploit DB Packet Storm
242322 7.5 危険 エンバカデロ・テクノロジーズ - Embarcadero Technologies InterBase SMP 2009 におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0391 2012-06-26 16:19 2010-01-26 Show GitHub Exploit DB Packet Storm
242323 9.3 危険 マイクロソフト
アドビシステムズ
- Microsoft Windows XP に同梱されている Adobe Flash Player の Macromedia Flash ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-0379 2012-06-26 16:19 2010-01-12 Show GitHub Exploit DB Packet Storm
242324 4.3 警告 codingfish
Joomla!
- Joomla! の marketplace コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0374 2012-06-26 16:19 2010-01-21 Show GitHub Exploit DB Packet Storm
242325 7.5 危険 bitscripts - BitScripts Bits Video Script における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-0367 2012-06-26 16:19 2010-01-21 Show GitHub Exploit DB Packet Storm
242326 6.8 警告 bitscripts - BitScripts Bits Video Script の register.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0366 2012-06-26 16:19 2010-01-21 Show GitHub Exploit DB Packet Storm
242327 4.3 警告 bitscripts - BitScripts Bits Video Script の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0365 2012-06-26 16:19 2010-01-21 Show GitHub Exploit DB Packet Storm
242328 7.5 危険 TYPO3 Association
arco van geest
- TYPO3 の Photo Book 拡張におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0350 2012-06-26 16:19 2010-01-15 Show GitHub Exploit DB Packet Storm
242329 7.5 危険 Alex Kellner
TYPO3 Association
- TYPO3 の powermail extension における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0329 2012-06-26 16:19 2010-01-15 Show GitHub Exploit DB Packet Storm
242330 4.3 警告 francois suter
TYPO3 Association
- TYPO3 の evlog 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0326 2012-06-26 16:19 2010-01-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268651 6.5 MEDIUM
Adjacent
logitech k400r_firmware
k360_firmware
k750_firmware
k830_firmware
unifying_receiver_firmware
Logitech Unifying devices before 2016-02-26 allow keystroke injection, bypassing encryption, aka MouseJack. CWE-74
Injection
CVE-2016-10761 2024-11-21 11:44 2019-06-30 Show GitHub Exploit DB Packet Storm
268652 9.8 CRITICAL
Network
seowonintech swr-300a_firmware
swr-300b_firmware
swr-300c_firmware
swr-300bg_firmware
On Seowon Intech routers, there is a Command Injection vulnerability in diagnostic.cgi via shell metacharacters in the ping_ipaddr parameter. CWE-77
Command Injection
CVE-2016-10760 2024-11-21 11:44 2019-06-12 Show GitHub Exploit DB Packet Storm
268653 9.8 CRITICAL
Network
precurio precurio The Xinha plugin in Precurio 2.1 allows Directory Traversal, with resultant arbitrary code execution, via ExtendedFileManager/Classes/ExtendedFileManager.php because ExtendedFileManager can be used t… CWE-22
Path Traversal
CVE-2016-10759 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268654 8.8 HIGH
Network
phpkit phpkit PHPKIT 1.6.6 allows arbitrary File Upload, as demonstrated by a .php file to pkinc/admin/mediaarchive.php and pkinc/func/default.php via the image_name parameter. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2016-10758 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268655 8.8 HIGH
Network
readaxo readaxo In Redaxo 5.2.0, the cron management of the admin panel suffers from CSRF that leads to arbitrary Remote Code Execution via addons/cronjob/lib/types/phpcode.php. CWE-352
 Origin Validation Error
CVE-2016-10757 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268656 8.8 HIGH
Network
kliqqi kliqqi_cms Kliqqi 3.0.0.5 allows CSRF with resultant Arbitrary File Upload because module.php?module=upload can be used to configure the uploading of .php files, and then modules/upload/upload_main.php can be u… CWE-352
 Origin Validation Error
CVE-2016-10756 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268657 8.8 HIGH
Network
abantecart abantecart AbanteCart 1.2.8 allows SQL Injection via the source_language parameter to admin/controller/pages/localisation/language.php and core/lib/language_manager.php, or via POST data to admin/controller/pag… CWE-89
SQL Injection
CVE-2016-10755 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268658 8.8 HIGH
Network
vtiger vtiger_crm modules/Calendar/Activity.php in Vtiger CRM 6.5.0 allows SQL injection via the contactidlist parameter. CWE-89
SQL Injection
CVE-2016-10754 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268659 8.8 HIGH
Network
e107 e107 e107 2.1.2 allows PHP Object Injection with resultant SQL injection, because usersettings.php uses unserialize without an HMAC. CWE-502
 Deserialization of Untrusted Data
CVE-2016-10753 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm
268660 9.8 CRITICAL
Network
s9y serendipity serendipity_moveMediaDirectory in Serendipity 2.0.3 allows remote attackers to upload and execute arbitrary PHP code because it mishandles an extensionless filename during a rename, as demonstrated b… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2016-10752 2024-11-21 11:44 2019-05-25 Show GitHub Exploit DB Packet Storm