Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226861 7.5 危険 YABSoft - YABSoft Mega File Hosting の cross.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-0966 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
226862 5 警告 xlinesoft - PHPRunner の UserView_list.php における権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-0964 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
226863 7.5 危険 xlinesoft - PHPRunner における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0963 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
226864 10 危険 The Tor Project - Tor における脆弱性 CWE-noinfo
情報不足
CVE-2009-0939 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
226865 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0938 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
226866 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0937 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
226867 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0936 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
226868 4.3 警告 ProcessOne - ejabberd におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0934 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
226869 7.5 危険 roman bogorodskiy - nForum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0882 2012-12-20 19:10 2009-03-12 Show GitHub Exploit DB Packet Storm
226870 5 警告 wesnoth - Wesnoth の src/terrain_translation.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0878 2012-12-20 19:10 2009-03-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201061 6.5 MEDIUM
Network
symonics
fedoraproject
libmysofa
fedora
Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and overwriting large memory block. CWE-787
 Out-of-bounds Write
CVE-2020-36151 2024-11-21 14:28 2021-02-9 Show GitHub Exploit DB Packet Storm
201062 6.5 MEDIUM
Network
symonics
fedoraproject
libmysofa
fedora
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory block. CWE-125
Out-of-bounds Read
CVE-2020-36150 2024-11-21 14:28 2021-02-9 Show GitHub Exploit DB Packet Storm
201063 6.5 MEDIUM
Network
symonics
fedoraproject
libmysofa
fedora
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protec… CWE-476
 NULL Pointer Dereference
CVE-2020-36149 2024-11-21 14:28 2021-02-9 Show GitHub Exploit DB Packet Storm
201064 6.5 MEDIUM
Network
symonics
fedoraproject
libmysofa
fedora
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protec… CWE-476
 NULL Pointer Dereference
CVE-2020-36148 2024-11-21 14:28 2021-02-9 Show GitHub Exploit DB Packet Storm
201065 8.8 HIGH
Network
zohocorp manageengine_applications_manager doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows an authenticated SQL Injection via the resourceid parameter to showresource.do. CWE-89
SQL Injection
CVE-2020-35765 2024-11-21 14:28 2021-02-5 Show GitHub Exploit DB Packet Storm
201066 9.8 CRITICAL
Network
asus rt-ax86u_firmware ASUS RT-AX86U router firmware below version under 9.0.0.4_386 has a buffer overflow in the blocking_request.cgi function of the httpd module that can cause code execution when an attacker constructs … CWE-120
Classic Buffer Overflow
CVE-2020-36109 2024-11-21 14:28 2021-02-1 Show GitHub Exploit DB Packet Storm
201067 5.4 MEDIUM
Network
egavilanmedia phpcrud Stored Cross Site Scripting (XSS) vulnerability in EGavilan Media CRUD Operation with PHP, MySQL, Bootstrap, and Dompdf via First Name or Last Name parameter in the 'Add New Record Feature'. CWE-79
Cross-site Scripting
CVE-2020-36115 2024-11-21 14:28 2021-01-29 Show GitHub Exploit DB Packet Storm
201068 7.2 HIGH
Network
opensolution quick.cms
quick.cart
OpenSolution Quick.CMS < 6.7 and Quick.Cart < 6.7 allow an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Language tab. CWE-94
Code Injection
CVE-2020-35754 2024-11-21 14:28 2021-01-29 Show GitHub Exploit DB Packet Storm
201069 4.8 MEDIUM
Network
bdtask multi-store Stored XSS vulnerability in BDTASK Multi-Store Inventory Management System 1.0 allows a local admin to inject arbitrary code via the Customer Name Field. CWE-79
Cross-site Scripting
CVE-2020-36012 2024-11-21 14:28 2021-01-27 Show GitHub Exploit DB Packet Storm
201070 4.8 MEDIUM
Network
qdocs smart_hospital A cross-site scripting (XSS) issue in Add Patient Form in QDOCS Smart Hospital Management System 3.1 allows a remote attacker to inject arbitrary code via the Name, Guardian Name, Email, Address, Rem… CWE-79
Cross-site Scripting
CVE-2020-36011 2024-11-21 14:28 2021-01-27 Show GitHub Exploit DB Packet Storm