|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227711 | 4.3 | 警告 | Urs Wolfer | - | kwebkitpart の webkitpart.cpp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4976 | 2012-12-20 19:28 | 2009-12-5 | Show | GitHub Exploit DB Packet Storm |
| 227712 | 3.5 | 注意 | TYPO3 Association | - | TYPO3 用の Commerce エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4963 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 227713 | 7.5 | 危険 | stefan koch | - | TYPO3 用の t3m エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4959 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 227714 | 4.3 | 警告 | wapplersystems | - | TYPO3 用の Visitor Tracking エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4956 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227715 | 7.5 | 危険 | thomas hempel | - | TYPO3 用の ultraCards エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4955 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227716 | 7.5 | 危険 | websedit | - | TYPO3 用の sk_calendar エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4954 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227717 | 4.3 | 警告 | stefan geith | - | TYPO3 用の sg_userdata エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4953 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227718 | 10 | 危険 | serge gebhardt | - | TYPO3 用の Directory Listing エクステンションにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4952 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227719 | 7.5 | 危険 | tim lochmueller & thomas buss | - | TYPO3 用の A21glossary Advanced Output エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4950 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
| 227720 | 7.5 | 危険 | q2solutions | - | Q2 Solutions ConnX の frmLoginPwdReminderPopup.aspx における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4947 | 2012-12-20 19:28 | 2010-07-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 28, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 215311 | 4.8 |
MEDIUM
Network |
redhat | keycloak | A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack. |
CWE-79
Cross-site Scripting |
CVE-2020-10776 | 2024-11-21 13:56 | 2020-11-17 | Show | GitHub Exploit DB Packet Storm |
| 215312 | 7.1 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8096au_firmware apq8098_firmware mdm8207_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9207_firmware mdm9250_firmware mdm9607_firmware<… |
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT… |
CWE-125
Out-of-bounds Read |
CVE-2020-11132 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215313 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9250_firmware mdm9628_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware qcs405_firmware… |
u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industria… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11131 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215314 | 7.8 |
HIGH
Local |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8… |
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290,… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11130 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215315 | 7.8 |
HIGH
Local |
qualcomm |
mdm9205_firmware qcm4290_firmware qcs405_firmware qcs410_firmware qcs4290_firmware qcs610_firmware qsm8250_firmware sa415m_firmware sa515m_firmware sa6145p_firmware sa61… |
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Sna… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11127 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215316 | 5.5 |
MEDIUM
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm… |
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at getting user`s lock-screen password can be bypassed by performing the st… |
NVD-CWE-Other
|
CVE-2020-11123 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215317 | 7.8 |
HIGH
Local |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8… |
u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobi… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11121 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 215318 | 7.5 |
HIGH
Network |
protocol | ipfs | An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverage the IPFS connection management reputation system to poison other nodes' routi… |
NVD-CWE-noinfo
|
CVE-2020-10937 | 2024-11-21 13:56 | 2020-11-3 | Show | GitHub Exploit DB Packet Storm |
| 215319 | 8.8 |
HIGH
Adjacent |
qualcomm | ar9344_firmware | u'Bluetooth devices does not properly restrict the L2CAP payload length allowing users in radio range to cause a buffer overflow via a crafted Link Layer packet(Equivalent to CVE-2019-17060,CVE-2019-… |
CWE-125
Out-of-bounds Read |
CVE-2020-11114 | 2024-11-21 13:56 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 215320 | 7.8 |
HIGH
Local |
qualcomm |
agatti_firmware apq8096au_firmware apq8098_firmware bitra_firmware kamorta_firmware msm8909w_firmware msm8917_firmware msm8940_firmware nicobar_firmware qca6390_firmware | u'Third-party app may also call the broadcasts in Perfdump and cause privilege escalation issue due to improper access control' in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, S… |
NVD-CWE-Other
|
CVE-2020-11164 | 2024-11-21 13:56 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |