Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227041 7.5 危険 scripts-for-sites - SFS SFS EZ Affiliate の directory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6780 2012-12-20 19:10 2009-05-1 Show GitHub Exploit DB Packet Storm
227042 7.5 危険 PHPNUKE - PHP-Nuke 用の Sarkilar モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6779 2012-12-20 19:10 2009-05-1 Show GitHub Exploit DB Packet Storm
227043 7.5 危険 scripts-for-sites - SFS EZ Auction の viewfaqs.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6778 2012-12-20 19:10 2009-05-1 Show GitHub Exploit DB Packet Storm
227044 7.5 危険 scripts-for-sites - SFS EZ Hot or Not の viewcomments.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6776 2012-12-20 19:10 2009-05-1 Show GitHub Exploit DB Packet Storm
227045 6.8 警告 shopsystem-forum - K&S Shopsoftware の admin/editor/images.php における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2008-6768 2012-12-20 19:10 2009-04-29 Show GitHub Exploit DB Packet Storm
227046 10 危険 WordPress.org - WordPress の wp-admin/upgrade.php におけるアプリケーションをアップグレードされる脆弱性 CWE-noinfo
情報不足
CVE-2008-6767 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227047 5 警告 viart - ViArt Shop の cart_save.php におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-6766 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227048 5 警告 viart - ViArt Shop における任意のショッピングカートの中身にアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2008-6765 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227049 4.3 警告 WordPress.org - WordPress の wp-admin/upgrade.php におけるオープンリダイレクトの脆弱性 CWE-59
リンク解釈の問題
CVE-2008-6762 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227050 4.3 警告 viart - ViArt Shop における重要な情報を取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2008-6760 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210051 6.0 MEDIUM
Network
docker
fedoraproject
debian
broadcom
engine
fedora
debian_linux
sannav
An issue was discovered in Docker Engine before 19.03.11. An attacker in a container, with the CAP_NET_RAW capability, can craft IPv6 router advertisements, and consequently spoof external IPv6 hosts… CWE-20
 Improper Input Validation 
CVE-2020-13401 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210052 2.5 LOW
Local
qemu
debian
opensuse
canonical
qemu
debian_linux
leap
ubuntu_linux
address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer. CWE-476
 NULL Pointer Dereference
CVE-2020-13659 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210053 6.1 MEDIUM
Network
bitrix bitrix24 modules/security/classes/general.post_filter.php/post_filter.php in the Web Application Firewall in Bitrix24 through 20.0.950 allows XSS by placing %00 before the payload. CWE-79
Cross-site Scripting
CVE-2020-13758 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210054 7.5 HIGH
Network
python-rsa_project
fedoraproject
canonical
python-rsa
fedora
ubuntu_linux
Python-RSA before 4.1 ignores leading '\0' bytes during decryption of ciphertext. This could conceivably have a security-relevant impact, e.g., by helping an attacker to infer that an application use… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-13757 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210055 7.2 HIGH
Network
quickbox quickbox In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user has sudo privileges to execute grep as root without a password, which allows an attacker to obtain s… CWE-306
CWE-269
Missing Authentication for Critical Function
 Improper Privilege Management
CVE-2020-13695 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210056 8.8 HIGH
Network
quickbox quickbox In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user can execute sudo mysql without a password, which means that the www-data user can execute arbitrary … CWE-78
OS Command 
CVE-2020-13694 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210057 8.8 HIGH
Network
quickbox quickbox QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8 allows an authenticated remote attacker to execute code on the server via command injection in the servicestart parameter. CWE-78
OS Command 
CVE-2020-13448 2024-11-21 14:01 2020-06-2 Show GitHub Exploit DB Packet Storm
210058 7.8 HIGH
Local
youhua windows_master In Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact b… CWE-20
 Improper Input Validation 
CVE-2020-13634 2024-11-21 14:01 2020-05-30 Show GitHub Exploit DB Packet Storm
210059 9.8 CRITICAL
Network
bbpress bbpress An unauthenticated privilege-escalation issue exists in the bbPress plugin before 2.6.5 for WordPress when New User Registration is enabled. NVD-CWE-noinfo
CVE-2020-13693 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm
210060 4.8 MEDIUM
Network
cmsmadesimple cms_made_simple CMS Made Simple through 2.2.14 allows XSS via a crafted File Picker profile name. CWE-79
Cross-site Scripting
CVE-2020-13660 2024-11-21 14:01 2020-05-29 Show GitHub Exploit DB Packet Storm