Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226171 4.3 警告 stefan auditor - Drupal 用の vCard モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3779 2012-12-20 19:28 2009-10-21 Show GitHub Exploit DB Packet Storm
226172 7.5 危険 santostefano giovanni - ToyLog の read.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3750 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
226173 5 警告 ウェブセンス - Websense Personal Email Manager および Email Security の Web Administrator サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-3749 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
226174 4.3 警告 ウェブセンス - Websense Personal Email Manager および Email Security の Web Administrator におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3748 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
226175 4.3 警告 tbmnet - TBmnetCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3747 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
226176 10 危険 riorey - RioRey RIOS における権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-3710 2012-12-20 19:28 2009-10-16 Show GitHub Exploit DB Packet Storm
226177 5 警告 zoiper - ZoIPer におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-3704 2012-12-20 19:28 2009-10-16 Show GitHub Exploit DB Packet Storm
226178 7.5 危険 php-calendar project - PHP-Calendar における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3702 2012-12-20 19:28 2009-12-22 Show GitHub Exploit DB Packet Storm
226179 5 警告 squidguard - squidGuard の sgLog.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3700 2012-12-20 19:28 2009-10-28 Show GitHub Exploit DB Packet Storm
226180 7.5 危険 The phpMyAdmin Project - phpMyAdmin の PDF スキーマジェネレータ機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3697 2012-12-20 19:28 2009-10-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211181 9.8 CRITICAL
Network
onlyoffice document_server A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API. CWE-89
SQL Injection
CVE-2020-11537 2024-11-21 13:58 2020-04-16 Show GitHub Exploit DB Packet Storm
211182 9.8 CRITICAL
Network
onlyoffice document_server An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the unzip function to rewrite a binary and remotely execute code on a victim's s… CWE-20
 Improper Input Validation 
CVE-2020-11536 2024-11-21 13:58 2020-04-16 Show GitHub Exploit DB Packet Storm
211183 9.8 CRITICAL
Network
onlyoffice document_server An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit XML injection to enter an attacker-controlled parameter into the x2t binary, to … CWE-91
Blind XPath Injection
CVE-2020-11535 2024-11-21 13:58 2020-04-16 Show GitHub Exploit DB Packet Storm
211184 9.8 CRITICAL
Network
onlyoffice document_server An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the NSFileDownloader function to pass parameters to a binary (such as curl or wg… CWE-20
 Improper Input Validation 
CVE-2020-11534 2024-11-21 13:58 2020-04-16 Show GitHub Exploit DB Packet Storm
211185 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11778 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
211186 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by Stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11777 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
211187 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11776 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
211188 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11774 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
211189 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11773 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
211190 4.8 MEDIUM
Network
netgear d7800_firmware
r7500_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-11772 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm