Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227141 4.3 警告 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3233 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227142 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3231 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227143 6.9 警告 swapoff - op におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3229 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227144 10 危険 phpBB - phpBB における脆弱性 CWE-noinfo
情報不足
CVE-2008-3224 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227145 6.8 警告 PowerDNS - PowerDNS Recursor における DNS を偽装される脆弱性 CWE-189
数値処理の問題
CVE-2008-3217 2012-12-20 18:52 2008-04-25 Show GitHub Exploit DB Packet Storm
227146 7.8 危険 thekelleys - dnsmasq におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3214 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227147 7.5 危険 webcms - WebCMS Portal Edition の secciones/tablon/tablon.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3213 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227148 7.5 危険 scripteen - Scripteen Free Image Hosting Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3212 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227149 7.5 危険 scripteen - Scripteen Free Image Hosting Script における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-3211 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
227150 5 警告 reSIProcate - repro で使用されている ReSIProcate におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3210 2012-12-20 18:52 2008-07-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210461 6.5 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, a possible resource exhaustion vulnerability can be performed. Malicious clients could trigger out of bound reads causing memory allocation with random size. T… - CVE-2020-11018 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
210462 6.5 MEDIUM
Network
freerdp
opensuse
debian
freerdp
leap
debian_linux
In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. This is fixed in version 2.1.0. - CVE-2020-11017 2024-11-21 13:56 2020-05-30 Show GitHub Exploit DB Packet Storm
210463 6.1 MEDIUM
Network
kaminari_project
debian
kaminari
debian_linux
In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary code into pages with pagination links. This has been fixed in 1.2.1. - CVE-2020-11082 2024-11-21 13:56 2020-05-29 Show GitHub Exploit DB Packet Storm
210464 9.8 CRITICAL
Network
node-dns-sync_project node-dns-sync node-dns-sync (npm module dns-sync) through 0.2.0 allows execution of arbitrary commands . This issue may lead to remote code execution if a client of the library calls the vulnerable method with unt… CWE-77
Command Injection
CVE-2020-11079 2024-11-21 13:56 2020-05-29 Show GitHub Exploit DB Packet Storm
210465 9.9 CRITICAL
Network
anchore engine In Anchore Engine version 0.7.0, a specially crafted container image manifest, fetched from a registry, can be used to trigger a shell escape flaw in the anchore engine analyzer service during an ima… NVD-CWE-Other
CVE-2020-11075 2024-11-21 13:56 2020-05-28 Show GitHub Exploit DB Packet Storm
210466 7.5 HIGH
Network
aegir_project aegir In AEgir greater than or equal to 21.7.0 and less than 21.10.1, aegir publish and aegir build may leak secrets from environment variables in the browser bundle published to npm. This has been fixed i… CWE-200
Information Exposure
CVE-2020-11059 2024-11-21 13:56 2020-05-28 Show GitHub Exploit DB Packet Storm
210467 7.8 HIGH
Local
sympa
fedoraproject
debian
canonical
sympa
fedora
debian_linux
ubuntu_linux
Sympa before 6.2.56 allows privilege escalation. CWE-269
 Improper Privilege Management
CVE-2020-10936 2024-11-21 13:56 2020-05-28 Show GitHub Exploit DB Packet Storm
210468 6.1 MEDIUM
Network
centreon centreon_host-monitoring_widget
centreon_tactical-overview_widget
centreon_service-monitoring_widget
Cross-site scripting (XSS) vulnerability allows remote attackers to inject arbitrary web script or HTML via the page parameter to service-monitoring/src/index.php. This vulnerability is fixed in vers… CWE-79
Cross-site Scripting
CVE-2020-10946 2024-11-21 13:56 2020-05-28 Show GitHub Exploit DB Packet Storm
210469 4.3 MEDIUM
Adjacent
centreon widget-host-monitoring
centreon
Centreon before 19.10.7 exposes Session IDs in server responses. CWE-200
Information Exposure
CVE-2020-10945 2024-11-21 13:56 2020-05-28 Show GitHub Exploit DB Packet Storm
210470 7.5 HIGH
Network
puma
fedoraproject
debian
puma
fedora
debian_linux
In Puma (RubyGem) before 4.3.4 and 3.12.5, an attacker could smuggle an HTTP response, by using an invalid transfer-encoding header. The problem has been fixed in Puma 3.12.5 and Puma 4.3.4. - CVE-2020-11076 2024-11-21 13:56 2020-05-23 Show GitHub Exploit DB Packet Storm