Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226711 4.3 警告 w3matter - W3matter RevSense の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6385 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226712 7.5 危険 phpbb-seo - Multi SEO phpBB の include/global.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6377 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226713 8.5 危険 socialgroupie - Social Groupie の Photos/create_album.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6367 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226714 4.3 警告 phpf1 - Max's Guestbook の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6359 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226715 7.5 危険 socialgroupie - Social Groupie の group_index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6358 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226716 5 警告 the net guys - The Net Guys ASPired2Protect におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6355 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226717 5 警告 the net guys - The Net Guys ASPired2poll におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6354 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226718 7.5 危険 xpoze - Xpoze Pro の home.html における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6352 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226719 4.3 警告 turnkeyforms - TurnkeyForms Local Classifieds の listtest.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6351 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
226720 7.5 危険 turnkeyforms - TurnkeyForms Local Classifieds の listtest.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6350 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200431 7.5 HIGH
Network
mbconnectline
helmholz
mbconnect24
mymbconnect24
myrex24.virtual
myrex24
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual through 2.11.2. There is an SSRF in the in the MySQL access check, allowing an attacker … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-35558 2024-11-21 14:27 2021-02-17 Show GitHub Exploit DB Packet Storm
200432 6.5 MEDIUM
Network
mbconnectline
helmholz
mbconnect24
mymbconnect24
myrex24.virtual
myrex24
An issue in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2 allows a logged in user to see devices in the account he should not hav… CWE-269
 Improper Privilege Management
CVE-2020-35557 2024-11-21 14:27 2021-02-17 Show GitHub Exploit DB Packet Storm
200433 7.2 HIGH
Network
batflat batflat Sruu.pl in Batflat 1.3.6 allows an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Users tab. To exploit this, one must login to the … CWE-94
Code Injection
CVE-2020-35734 2024-11-21 14:27 2021-02-16 Show GitHub Exploit DB Packet Storm
200434 7.8 HIGH
Local
freedesktop dbus A use-after-free flaw was found in D-Bus Development branch <= 1.13.16, dbus-1.12.x stable branch <= 1.12.18, and dbus-1.10.x and older branches <= 1.10.30 when a system has multiple usernames sharin… CWE-416
 Use After Free
CVE-2020-35512 2024-11-21 14:27 2021-02-16 Show GitHub Exploit DB Packet Storm
200435 7.5 HIGH
Network
openvswitch
debian
fedoraproject
openvswitch
debian_linux
fedora
A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a malicious user to send a specially crafted packet causing the resulting megaflow i… - CVE-2020-35498 2024-11-21 14:27 2021-02-12 Show GitHub Exploit DB Packet Storm
200436 6.1 MEDIUM
Network
adminer adminer Adminer through 4.7.8 allows XSS via the history parameter to the default URI. CWE-79
Cross-site Scripting
CVE-2020-35572 2024-11-21 14:27 2021-02-10 Show GitHub Exploit DB Packet Storm
200437 8.8 HIGH
Network
librenms librenms A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNMS before 21.1.0 allows remote authenticated attackers to execute arbitrary SQL … CWE-89
SQL Injection
CVE-2020-35700 2024-11-21 14:27 2021-02-8 Show GitHub Exploit DB Packet Storm
200438 7.5 HIGH
Network
jetbrains teamcity JetBrains TeamCity Plugin before 2020.2.85695 SSRF. Vulnerability that could potentially expose user credentials. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-35667 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm
200439 5.4 MEDIUM
Network
solarwinds serv-u SolarWinds Serv-U before 15.2.2 allows authenticated reflected XSS. CWE-79
Cross-site Scripting
CVE-2020-35482 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm
200440 9.8 CRITICAL
Network
solarwinds serv-u SolarWinds Serv-U before 15.2.2 allows Unauthenticated Macro Injection. NVD-CWE-Other
CVE-2020-35481 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm