Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226251 6.8 警告 tntforum - TNT Forum の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5265 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
226252 4.3 警告 tornado - Tornado Knowledge Retrieval System の searcher.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5264 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
226253 4.4 警告 virtualox - Sun Innotek VirtualBox の ipcdUnix.cpp における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5256 2012-12-20 18:52 2008-11-26 Show GitHub Exploit DB Packet Storm
226254 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5248 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226255 4.3 警告 Xine - xine-lib の demux_real.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-5247 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
226256 9.3 危険 Xine - xine-lib におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5246 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226257 9.3 危険 Xine - xine-lib における脆弱性 CWE-119
バッファエラー
CVE-2008-5245 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226258 10 危険 Xine - xine-lib における脆弱性 CWE-noinfo
情報不足
CVE-2008-5244 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226259 4.3 警告 Xine - xine-lib の demux_real.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5243 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
226260 6.8 警告 Xine - xine-lib の demux_qt.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-5242 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199271 7.8 HIGH
Local
microsoft azure_sphere A code execution vulnerability exists in the normal world’s signed code execution functionality of Microsoft Azure Sphere 20.07. A specially crafted AF_PACKET socket can cause a process to create an … CWE-74
Injection
CVE-2020-35608 2024-11-21 14:27 2020-12-23 Show GitHub Exploit DB Packet Storm
199272 8.8 HIGH
Network
mediawiki mediawiki An issue was discovered in the PushToWatch extension for MediaWiki through 1.35.1. The primary form did not implement an anti-CSRF token and therefore was completely vulnerable to CSRF attacks agains… CWE-352
 Origin Validation Error
CVE-2020-35626 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199273 8.8 HIGH
Network
mediawiki mediawiki An issue was discovered in the Widgets extension for MediaWiki through 1.35.1. Any user with the ability to edit pages within the Widgets namespace could call any static function within any class (de… CWE-862
 Missing Authorization
CVE-2020-35625 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199274 5.3 MEDIUM
Network
mediawiki mediawiki An issue was discovered in the SecurePoll extension for MediaWiki through 1.35.1. The non-admin vote list contains a full vote timestamp, which may provide unintended clues about how a voting process… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-35624 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199275 7.5 HIGH
Network
mediawiki mediawiki An issue was discovered in the CasAuth extension for MediaWiki through 1.35.1. Due to improper username validation, it allowed user impersonation with trivial manipulations of certain characters with… CWE-20
CWE-706
 Improper Input Validation 
 Use of Incorrectly-Resolved Name or Reference
CVE-2020-35623 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199276 6.1 MEDIUM
Network
mediawiki mediawiki An issue was discovered in the GlobalUsage extension for MediaWiki through 1.35.1. SpecialGlobalUsage.php calls WikiMap::makeForeignLink unsafely. The $page variable within the formatItem function wa… CWE-79
Cross-site Scripting
CVE-2020-35622 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199277 8.8 HIGH
Network
webmin webmin Arbitrary command execution can occur in Webmin through 1.962. Any user authorized for the Package Updates module can execute arbitrary commands with root privileges via vectors involving %0A and %0C… CWE-78
OS Command 
CVE-2020-35606 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199278 9.8 CRITICAL
Network
kitty_project
debian
kitty
debian_linux
The Graphics Protocol feature in graphics.c in kitty before 0.19.3 allows remote attackers to execute arbitrary code because a filename containing special characters can be included in an error messa… NVD-CWE-Other
CVE-2020-35605 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199279 9.8 CRITICAL
Network
kronos web_time_and_attendance An XXE attack can occur in Kronos WebTA 5.0.4 when SAML is used. CWE-611
XXE
CVE-2020-35604 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm
199280 6.5 MEDIUM
Network
ovirt
redhat
ovirt-engine
virtualization
A flaw was found in ovirt-engine 4.4.3 and earlier allowing an authenticated user to read other users' personal information, including name, email and public SSH key. - CVE-2020-35497 2024-11-21 14:27 2020-12-22 Show GitHub Exploit DB Packet Storm