Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226201 4.3 警告 Plohni - An image gallery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3367 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226202 5 警告 Plohni - An image gallery の navigation.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3366 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226203 7.5 危険 traza - Aurora CMS の add-ons/modules/sysmanager/plugins/install.plugin.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3365 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226204 4.3 警告 ufku bayburt - Drupal 用の BUEditor モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3363 2012-12-20 19:28 2009-09-9 Show GitHub Exploit DB Packet Storm
226205 7.5 危険 sznews - SZNews の printnews.php3 における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3362 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226206 7.5 危険 tourismscripts - Tourism Scripts Adult Portal エスコートリストの profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3358 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226207 7.5 危険 Plohni - Image voting の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3356 2012-12-20 19:28 2009-09-24 Show GitHub Exploit DB Packet Storm
226208 10 危険 Steve Lockwood - Drupal 用の Node2Node モジュールにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3353 2012-12-20 19:28 2009-09-9 Show GitHub Exploit DB Packet Storm
226209 10 危険 roshan shah - Drupal 用の Quota by role モジュールにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3352 2012-12-20 19:28 2009-09-9 Show GitHub Exploit DB Packet Storm
226210 10 危険 roshan shah - Drupal 用の Subdomain Manager モジュールにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3350 2012-12-20 19:28 2009-09-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213011 8.8 HIGH
Network
microsoft sql_server A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution V… CWE-502
 Deserialization of Untrusted Data
CVE-2020-0618 2024-11-21 13:53 2020-02-12 Show GitHub Exploit DB Packet Storm
213012 5.5 MEDIUM
Local
intel
opensuse
debian
canonical
fedoraproject
core_i7-8700b_firmware
core_i7-8569u_firmware
core_i7_8650u_firmware
core_i7_8565u_firmware
core_i7_8560u_firmware
core_i7_8559u_firmware
core_i7_8550u_firmware
core_i7_8500y_fir…
Cleanup errors in some data cache evictions for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. CWE-404
 Improper Resource Shutdown or Release
CVE-2020-0549 2024-11-21 13:53 2020-01-28 Show GitHub Exploit DB Packet Storm
213013 5.5 MEDIUM
Local
intel core_i7-8700b_firmware
core_i7-8569u_firmware
core_i7_8650u_firmware
core_i7_8565u_firmware
core_i7_8560u_firmware
core_i7_8559u_firmware
core_i7_8550u_firmware
core_i7_8500y_fir…
Cleanup errors in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. CWE-404
 Improper Resource Shutdown or Release
CVE-2020-0548 2024-11-21 13:53 2020-01-28 Show GitHub Exploit DB Packet Storm
213014 5.4 MEDIUM
Network
microsoft dynamics_365 A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamic… CWE-79
Cross-site Scripting
CVE-2020-0656 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213015 9.1 CRITICAL
Network
microsoft onedrive A security feature bypass vulnerability exists in Microsoft OneDrive App for Android.This could allow an attacker to bypass the passcode or fingerprint requirements of the App.The security update add… NVD-CWE-noinfo
CVE-2020-0654 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213016 7.8 HIGH
Local
microsoft office_365_proplus A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This … NVD-CWE-noinfo
CVE-2020-0653 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213017 7.8 HIGH
Local
microsoft excel
office_365_proplus
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'. CWE-787
 Out-of-bounds Write
CVE-2020-0652 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213018 7.8 HIGH
Local
microsoft excel
office_365_proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This … NVD-CWE-noinfo
CVE-2020-0651 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213019 7.8 HIGH
Local
microsoft excel
office_365_proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This … NVD-CWE-noinfo
CVE-2020-0650 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm
213020 5.4 MEDIUM
Network
microsoft office_online_server A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Spoofing Vulnerability'. CWE-346
 Origin Validation Error
CVE-2020-0647 2024-11-21 13:53 2020-01-15 Show GitHub Exploit DB Packet Storm