Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227241 4.3 警告 tftgallery - TFTgallery の settings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3911 2012-12-20 19:28 2009-11-9 Show GitHub Exploit DB Packet Storm
227242 3.5 注意 WordPress.org - WordPress の wp-admin/press-this.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3891 2012-12-20 19:28 2009-11-12 Show GitHub Exploit DB Packet Storm
227243 6 警告 WordPress.org - WordPress の wp-includes/functions.php における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3890 2012-12-20 19:28 2009-11-12 Show GitHub Exploit DB Packet Storm
227244 9.3 危険 サン・マイクロシステムズ - Sun Java System Web Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3878 2012-12-20 19:28 2009-11-5 Show GitHub Exploit DB Packet Storm
227245 6.9 警告 SafeNet, Inc - SafeNet SoftRemote におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3861 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
227246 4.3 警告 Softonic - Softonic International SciTE におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3857 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
227247 4.3 警告 Strata Technologies - Twilight CMS の news/ のデフォルト URI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3856 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
227248 9.3 危険 Pegasus Mail - PMail におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3838 2012-12-20 19:28 2009-11-2 Show GitHub Exploit DB Packet Storm
227249 7.5 危険 whorl ltd - Joomla! 用の JShop コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3835 2012-12-20 19:28 2009-11-2 Show GitHub Exploit DB Packet Storm
227250 7.5 危険 webguerilla - Joomla! 用の Photoblog コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3834 2012-12-20 19:28 2009-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209401 5.4 MEDIUM
Network
microsoft dynamics_365 <p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated at… CWE-79
Cross-site Scripting
CVE-2020-16871 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209402 5.4 MEDIUM
Network
microsoft dynamics_365 <p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated at… CWE-79
Cross-site Scripting
CVE-2020-16864 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209403 7.1 HIGH
Network
microsoft dynamics_365 <p>A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) when the server fails to properly sanitize web requests to an affected Dynamics server. An attacker who success… NVD-CWE-noinfo
CVE-2020-16862 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209404 5.4 MEDIUM
Network
microsoft dynamics_365 <p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated at… CWE-79
Cross-site Scripting
CVE-2020-16861 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209405 6.8 MEDIUM
Network
microsoft dynamics_365 <p>A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) when the server fails to properly sanitize web requests to an affected Dynamics server. An attacker who success… NVD-CWE-noinfo
CVE-2020-16860 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209406 5.4 MEDIUM
Network
microsoft dynamics_365 <p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated at… CWE-79
Cross-site Scripting
CVE-2020-16859 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209407 5.4 MEDIUM
Network
microsoft dynamics_365 <p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated at… CWE-79
Cross-site Scripting
CVE-2020-16858 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209408 7.1 HIGH
Network
microsoft dynamics_365_for_finance_and_operations <p>A remote code execution vulnerability exists in Microsoft Dynamics 365 for Finance and Operations (on-premises) version 10.0.11. An attacker who successfully exploited this vulnerability could gai… NVD-CWE-noinfo
CVE-2020-16857 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209409 7.8 HIGH
Local
microsoft visual_studio
visual_studio_2019
visual_studio_2017
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the… NVD-CWE-noinfo
CVE-2020-16856 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm
209410 5.5 MEDIUM
Local
microsoft office <p>An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory. An attacker w… CWE-125
CWE-908
Out-of-bounds Read
 Use of Uninitialized Resource
CVE-2020-16855 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm