Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226431 5 警告 オラクル - Oracle Secure Backup の Oracle Secure Backup コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2008-3981 2013-06-21 14:36 2009-01-13 Show GitHub Exploit DB Packet Storm
226432 7.5 危険 kamads - Bloginator の articleCall.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1049 2013-06-21 14:34 2009-03-20 Show GitHub Exploit DB Packet Storm
226433 3.5 注意 Ivan Jaros - Drupal 用モジュールの Feed Block におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1738 2013-06-21 14:33 2009-05-4 Show GitHub Exploit DB Packet Storm
226434 7.5 危険 Google - Google Chrome の PDF 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2864 2013-06-20 17:26 2013-06-4 Show GitHub Exploit DB Packet Storm
226435 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3142 2013-06-20 17:19 2013-06-11 Show GitHub Exploit DB Packet Storm
226436 9.3 危険 マイクロソフト - Microsoft Internet Explorer 8 および 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3141 2013-06-20 17:17 2013-06-11 Show GitHub Exploit DB Packet Storm
226437 9 危険 マイクロソフト - 複数の Microsoft Windows 製品の印刷スプーラーにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1339 2013-06-20 17:16 2013-06-11 Show GitHub Exploit DB Packet Storm
226438 7.1 危険 マイクロソフト - 複数の Microsoft Windows 製品の TCP/IP カーネルモードドライバにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-3138 2013-06-20 17:13 2013-06-11 Show GitHub Exploit DB Packet Storm
226439 4.4 警告 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける重要な情報を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2013-3136 2013-06-20 17:12 2013-06-11 Show GitHub Exploit DB Packet Storm
226440 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3126 2013-06-20 17:12 2013-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208751 6.1 MEDIUM
Network
cxuu cxuucms CXUUCMS V3 allows class="layui-input" XSS. CWE-79
Cross-site Scripting
CVE-2020-29249 2024-11-21 14:23 2020-12-27 Show GitHub Exploit DB Packet Storm
208752 7.2 HIGH
Network
zyxel zld
vpn_orchestrator
nsg_firmware
usg_flex_firmware
Certain Zyxel products allow command injection by an admin via an input string to chg_exp_pwd during a password-change action. This affects VPN On-premise before ZLD V4.39 week38, VPN Orchestrator be… CWE-77
Command Injection
CVE-2020-29299 2024-11-21 14:23 2020-12-27 Show GitHub Exploit DB Packet Storm
208753 6.1 MEDIUM
Network
xuxueli xxl-job XXL-JOB 2.2.0 allows Stored XSS (in Add User) to bypass the 20-character limit via xxl-job-admin/src/main/java/com/xxl/job/admin/controller/UserController.java. CWE-79
Cross-site Scripting
CVE-2020-29204 2024-11-21 14:23 2020-12-27 Show GitHub Exploit DB Packet Storm
208754 9.8 CRITICAL
Network
struct2json_project struct2json struct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for S2J_STRUCT_GET_string_ELEMENT. CWE-120
Classic Buffer Overflow
CVE-2020-29203 2024-11-21 14:23 2020-12-27 Show GitHub Exploit DB Packet Storm
208755 5.5 MEDIUM
Local
tengine_project tengine The serializer module in OAID Tengine lite-v1.0 has a Buffer Overflow and crash. NOTE: another person has stated "I don't think there is an proof of overflow so far. CWE-120
Classic Buffer Overflow
CVE-2020-28759 2024-11-21 14:23 2020-12-27 Show GitHub Exploit DB Packet Storm
208756 6.1 MEDIUM
Network
litespeedtech litespeed_cache A cross-site scripting (XSS) vulnerability in the LiteSpeed Cache plugin before 3.6.1 for WordPress can be exploited via the Server IP setting. CWE-79
Cross-site Scripting
CVE-2020-29172 2024-11-21 14:23 2020-12-26 Show GitHub Exploit DB Packet Storm
208757 5.5 MEDIUM
Local
gnome
canonical
fedoraproject
gdk-pixbuf
ubuntu_linux
fedora
GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c in the function write_indexes. if c->self_code equals 10, self->code_table[10].extends will assign t… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-29385 2024-11-21 14:23 2020-12-26 Show GitHub Exploit DB Packet Storm
208758 4.8 MEDIUM
Network
wondercms wondercms WonderCMS 3.1.3 is affected by cross-site scripting (XSS) in the Admin Panel. An attacker can inject the XSS payload in Page keywords and each time any user will visit the website, the XSS triggers, … CWE-79
Cross-site Scripting
CVE-2020-29247 2024-11-21 14:23 2020-12-25 Show GitHub Exploit DB Packet Storm
208759 7.0 HIGH
Local
mariadb mariadb With MariaDB running on Windows, when local clients connect to the server over named pipes, it's possible for an unprivileged user with an ability to run code on the server machine to intercept the n… NVD-CWE-Other
CVE-2020-28912 2024-11-21 14:23 2020-12-25 Show GitHub Exploit DB Packet Storm
208760 8.1 HIGH
Network
terra-master tos Incorrect Access Control vulnerability in TerraMaster TOS <= 4.2.06 allows remote authenticated attackers to bypass read-only restriction and obtain full access to any folder within the NAS NVD-CWE-noinfo
CVE-2020-29189 2024-11-21 14:23 2020-12-25 Show GitHub Exploit DB Packet Storm