Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253521 4.3 警告 有限会社 のれんずプロ - AD-EDIT2 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2367 2010-10-5 11:02 2010-10-5 Show GitHub Exploit DB Packet Storm
253522 9.3 危険 アップル - iPhone および iPod touch 上で稼動する Apple iOS の ImageIO におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1817 2010-10-4 17:59 2010-09-8 Show GitHub Exploit DB Packet Storm
253523 5.8 警告 アップル - iPhone および iPod touch 上で稼動する Apple iOS の FaceTime における通話をリダイレクトされる脆弱性 CWE-Other
その他
CVE-2010-1810 2010-10-4 17:55 2010-09-8 Show GitHub Exploit DB Packet Storm
253524 10 危険 アップル - iPhone および iPod touch 上で稼動する Apple iOS の Accessibility コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-1809 2010-10-4 17:55 2010-09-8 Show GitHub Exploit DB Packet Storm
253525 4 警告 ISC, Inc.
IBM
サイバートラスト株式会社
サン・マイクロシステムズ
ターボリナックス
ヒューレット・パッカード
レッドハット
- BIND 9 の DNSSEC 検証処理における脆弱性 CWE-noinfo
情報不足
CVE-2009-4022 2010-10-1 17:39 2009-12-2 Show GitHub Exploit DB Packet Storm
253526 4 警告 ISC, Inc.
サイバートラスト株式会社
ターボリナックス
ヒューレット・パッカード
レッドハット
- ISC BIND における DNS キャッシュ汚染の脆弱性 CWE-noinfo
情報不足
CVE-2010-0290 2010-10-1 17:39 2010-01-22 Show GitHub Exploit DB Packet Storm
253527 7.6 危険 ISC, Inc.
ヒューレット・パッカード
- ISC BIND における処理範囲外のデータ処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2010-0382 2010-10-1 17:38 2010-01-22 Show GitHub Exploit DB Packet Storm
253528 9 危険 日立 - Groupmax Scheduler Server における複数の脆弱性 CWE-noinfo
情報不足
- 2010-10-1 17:37 2010-09-6 Show GitHub Exploit DB Packet Storm
253529 5.8 警告 富士通
アクセラテクノロジ
- Accela BizSearch の文書参照画面におけるフィッシング脅威の脆弱性 CWE-noinfo
情報不足
- 2010-10-1 17:37 2010-09-2 Show GitHub Exploit DB Packet Storm
253530 9.3 危険 Mozilla Foundation - Windows 上で稼働する複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-3131 2010-10-1 17:31 2010-09-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265821 9.8 CRITICAL
Network
centralized_salesforce_development_framework_project centralized_salesforce_development_framework A vulnerability was found in Centralized-Salesforce-Dev-Framework. It has been declared as problematic. Affected by this vulnerability is the function SObjectService of the file src/classes/SObjectSe… - CVE-2016-15007 2024-11-21 11:45 2023-01-3 Show GitHub Exploit DB Packet Storm
265822 5.3 MEDIUM
Network
enigmax_project enigmax A vulnerability, which was classified as problematic, has been found in enigmaX up to 2.2. This issue affects the function getSeed of the file main.c of the component Scrambling Table Handler. The ma… - CVE-2016-15006 2024-11-21 11:45 2023-01-2 Show GitHub Exploit DB Packet Storm
265823 8.8 HIGH
Network
golf_project golf CSRF tokens are generated using math/rand, which is not a cryptographically secure random number generator, allowing an attacker to predict values and bypass CSRF protections with relatively few requ… CWE-352
 Origin Validation Error
CVE-2016-15005 2024-11-21 11:45 2022-12-28 Show GitHub Exploit DB Packet Storm
265824 9.8 CRITICAL
Network
revmakx infinitewp_client A vulnerability was found in InfiniteWP Client Plugin 1.5.1.3/1.6.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to injection.… - CVE-2016-15004 2024-11-21 11:45 2022-07-23 Show GitHub Exploit DB Packet Storm
265825 7.8 HIGH
Local
filezilla-project filezilla_client A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic. This vulnerability affects unknown code of the file C:\Program Files\FileZilla FTP Client\uninstall.exe of t… CWE-428
 Unquoted Search Path or Element
CVE-2016-15003 2024-11-21 11:45 2022-07-18 Show GitHub Exploit DB Packet Storm
265826 8.8 HIGH
Network
ideracorp webyog_monyog_ultimate A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of the component Cookie Handler. The manipulation of the argument HasServerEdit/IsAd… CWE-565
 Reliance on Cookies without Validation and Integrity Checking
CVE-2016-15002 2024-11-21 11:45 2022-06-10 Show GitHub Exploit DB Packet Storm
265827 7.4 HIGH
Network
oauth-ruby_project oauth-ruby lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby does not verify server X.509 certificates if a certificate bundle cannot be found, which allows man-in-the-middle attackers to spoof… CWE-295
Improper Certificate Validation 
CVE-2016-11086 2024-11-21 11:45 2020-09-25 Show GitHub Exploit DB Packet Storm
265828 6.5 MEDIUM
Network
expresstech quiz_and_survey_master php/qmn_options_questions_tab.php in the quiz-master-next plugin before 4.7.9 for WordPress allows CSRF, with resultant stored XSS, via the question_name parameter because js/admin_question.js mishan… CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2016-11085 2024-11-21 11:45 2020-08-17 Show GitHub Exploit DB Packet Storm
265829 6.1 MEDIUM
Network
mattermost mattermost_server An issue was discovered in Mattermost Server before 2.1.0. It allows XSS via CSRF. CWE-352
 Origin Validation Error
CVE-2016-11084 2024-11-21 11:45 2020-06-20 Show GitHub Exploit DB Packet Storm
265830 6.1 MEDIUM
Network
mattermost mattermost_server An issue was discovered in Mattermost Server before 2.2.0. It allows XSS because it configures files to be opened in a browser window. CWE-79
Cross-site Scripting
CVE-2016-11083 2024-11-21 11:45 2020-06-20 Show GitHub Exploit DB Packet Storm