Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225801 4.3 警告 Matthias Hutterer - Drupal 用 Email Field モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5587 2012-12-28 15:58 2012-11-28 Show GitHub Exploit DB Packet Storm
225802 2.1 注意 Marc Ingram - Drupal 用 Services モジュールにおける任意のユーザの電子メールにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5586 2012-12-28 15:57 2012-11-28 Show GitHub Exploit DB Packet Storm
225803 2.1 注意 Mixpanel Project - Drupal 用 Mixpanel モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5585 2012-12-28 15:50 2012-11-28 Show GitHub Exploit DB Packet Storm
225804 4.3 警告 Made to Order Software - Drupal 用 Table of Contents モジュールにおけるノードのヘッダを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5584 2012-12-28 15:49 2012-11-14 Show GitHub Exploit DB Packet Storm
225805 6.8 警告 Sensio Labs - Symfony における任意のサービスにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6432 2012-12-28 15:20 2012-12-20 Show GitHub Exploit DB Packet Storm
225806 6.4 警告 Sensio Labs - Symfony における URI の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6431 2012-12-28 15:18 2012-12-20 Show GitHub Exploit DB Packet Storm
225807 4.3 警告 Sebastian Heinlein
Canonical
- Ubuntu の Aptdaemon における任意のパッケージレポジトリの GPG キーをインストールされる脆弱性 CWE-noinfo
情報不足
CVE-2012-0962 2012-12-28 15:03 2012-12-17 Show GitHub Exploit DB Packet Storm
225808 2.1 注意 Debian - Ubuntu で使用される APT における重要なシェル情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0961 2012-12-28 14:59 2012-12-12 Show GitHub Exploit DB Packet Storm
225809 4.3 警告 PS Project Management Team - Firefox 用 Unity integration 拡張機能における同一生成元ポリシーを回避される脆弱性 CWE-DesignError
CVE-2012-0958 2012-12-28 14:58 2012-10-23 Show GitHub Exploit DB Packet Storm
225810 - - Ruby on Rails project - ** 削除 ** Ruby on Rails 用 Authlogic gem における SQL インジェクションの脆弱性 - CVE-2012-5664 2012-12-28 14:22 2012-12-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212571 5.5 MEDIUM
Local
oppo reno3_pro_firmware
find_x2_pro_firmware
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_write in proc_work_mode_write causes a vulnerability. CWE-787
 Out-of-bounds Write
CVE-2020-11835 2024-11-21 13:58 2021-01-1 Show GitHub Exploit DB Packet Storm
212572 5.5 MEDIUM
Local
oppo reno3_pro_firmware
find_x2_pro_firmware
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function proc_fastchg_fw_update_write in proc_fastchg_fw_update_write does not check the parameter len, resulting in a vulnerabil… CWE-787
 Out-of-bounds Write
CVE-2020-11834 2024-11-21 13:58 2021-01-1 Show GitHub Exploit DB Packet Storm
212573 5.5 MEDIUM
Local
oppo reno3_pro_firmware
find_x2_pro_firmware
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_mp2650.c, the function mp2650_data_log_write in mp2650_data_log_write does not check the parameter len which causes a vulnerabilit… CWE-787
 Out-of-bounds Write
CVE-2020-11833 2024-11-21 13:58 2021-01-1 Show GitHub Exploit DB Packet Storm
212574 5.5 MEDIUM
Local
oppo reno3_pro_firmware
find_x2_pro_firmware
In functions charging_limit_current_write and charging_limit_time_write in /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_charger.c have not checked the parameters, which causes a vulnerabili… CWE-787
 Out-of-bounds Write
CVE-2020-11832 2024-11-21 13:58 2021-01-1 Show GitHub Exploit DB Packet Storm
212575 3.8 LOW
Local
qemu qemu iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker. CWE-125
Out-of-bounds Read
CVE-2020-11947 2024-11-21 13:58 2020-12-31 Show GitHub Exploit DB Packet Storm
212576 7.5 HIGH
Network
bilanc bilanc An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. It relies on broken encryption with a weak and guessable static encryption key. CWE-798
 Use of Hard-coded Credentials
CVE-2020-11719 2024-11-21 13:58 2020-12-24 Show GitHub Exploit DB Packet Storm
212577 9.8 CRITICAL
Network
bilanc bilanc An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. During the installation, it sets up administrative access by default with the account admin and passwor… CWE-798
 Use of Hard-coded Credentials
CVE-2020-11720 2024-11-21 13:58 2020-12-24 Show GitHub Exploit DB Packet Storm
212578 7.4 HIGH
Network
bilanc bilanc An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below. Its software-update packages are downloaded via cleartext HTTP. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-11718 2024-11-21 13:58 2020-12-24 Show GitHub Exploit DB Packet Storm
212579 9.8 CRITICAL
Network
bilanc bilanc An issue was discovered in Programi 014 31.01.2020. It has multiple SQL injection vulnerabilities. CWE-89
SQL Injection
CVE-2020-11717 2024-11-21 13:58 2020-12-22 Show GitHub Exploit DB Packet Storm
212580 3.3 LOW
Local
audacityteam
fedoraproject
audacity
fedora
Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and… CWE-276
Incorrect Default Permissions 
CVE-2020-11867 2024-11-21 13:58 2020-12-1 Show GitHub Exploit DB Packet Storm