Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228121 7.5 危険 questions answered - Questions Answered の管理インターフェースにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4728 2012-12-20 19:28 2010-03-18 Show GitHub Exploit DB Packet Storm
228122 4.3 警告 phpscriptsnow - Real Time Currency Exchange の rates.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4715 2012-12-20 19:28 2010-03-15 Show GitHub Exploit DB Packet Storm
228123 7.5 危険 tukanas - Tukanas Classifieds Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4712 2012-12-20 19:28 2010-03-15 Show GitHub Exploit DB Packet Storm
228124 4.3 警告 Pligg - Pligg におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2009-4788 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
228125 6.8 警告 Pligg - Pligg におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4787 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
228126 4.3 警告 Pligg - Pligg におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4786 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
228127 4.3 警告 phpMyFAQ - phpMyFAQ の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4780 2012-12-20 19:28 2009-12-1 Show GitHub Exploit DB Packet Storm
228128 6.8 警告 Ubercart - Drupal 用の Ubercart モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4773 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
228129 4.3 警告 Ubercart - Drupal 用の Ubercart モジュールにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2009-4772 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
228130 5 警告 Ubercart - Drupal 用の Ubercart モジュールにおける不特定の "複製操作" を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4771 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
216011 7.5 HIGH
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8064au_firmware
apq8096au_firmware
aqt1000_firmware
ar7420_firmware
ar8031_firmware
ar8035_firmware
ar9380_firmware
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon C… CWE-287
Improper Authentication
CVE-2020-11301 2024-11-21 13:57 2021-09-8 Show GitHub Exploit DB Packet Storm
216012 9.8 CRITICAL
Network
qualcomm apq8009w_firmware
apq8017_firmware
apq8053_firmware
apq8064au_firmware
apq8096au_firmware
aqt1000_firmware
msm8909w_firmware
msm8917_firmware
msm8937_firmware
msm8953_firmw…
Buffer overflow in modem due to improper array index check before copying into it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, … CWE-129
 Improper Validation of Array Index
CVE-2020-11307 2024-11-21 13:57 2021-07-13 Show GitHub Exploit DB Packet Storm
216013 7.5 HIGH
Network
qualcomm apq8009_firmware
apq8096au_firmware
aqt1000_firmware
ar8031_firmware
ar8035_firmware
ar9380_firmware
csr8811_firmware
csra6620_firmware
csra6640_firmware
csrb31024_firmware…
Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrago… CWE-125
Out-of-bounds Read
CVE-2020-11241 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216014 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8009w_firmware
apq8017_firmware
apq8037_firmware
apq8053_firmware
apq8064au_firmware
apq8076_firmware
apq8096au_firmware
aqt1000_firmware
ar8031_firmwar…
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, S… CWE-416
 Use After Free
CVE-2020-11239 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216015 7.5 HIGH
Network
qualcomm aqt1000_firmware
ar8031_firmware
ar8035_firmware
ar8151_firmware
ar9380_firmware
csr8811_firmware
csra6620_firmware
csra6640_firmware
csrb31024_firmware
ipq4018_firmware
Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit… CWE-125
Out-of-bounds Read
CVE-2020-11238 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216016 7.8 HIGH
Local
qualcomm aqt1000_firmware
ar8035_firmware
qca6390_firmware
qca6391_firmware
qca6420_firmware
qca6421_firmware
qca6426_firmware
qca6430_firmware
qca6431_firmware
qca6436_firmware
Possible integer overflow in RPMB counter due to lack of length check on user provided data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indust… CWE-190
 Integer Overflow or Wraparound
CVE-2020-11306 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216017 7.0 HIGH
Local
qualcomm aqt1000_firmware
ar8031_firmware
ar8035_firmware
csra6620_firmware
csra6640_firmware
mdm9205_firmware
mdm9206_firmware
mdm9628_firmware
qca4004_firmware
qca6390_firmware
While waiting for a response to a callback or listener request, non-secure clients can change permissions to shared memory buffers used by HLOS Invoke Call to secure kernel in Snapdragon Auto, Snapdr… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2020-11298 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216018 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8064au_firmware
apq8076_firmware
apq8084_firmware
apq8092_firmware
apq8094_firmware
apq8096au_firmware
aqt1000_firmwar…
Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics … CWE-190
 Integer Overflow or Wraparound
CVE-2020-11235 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216019 7.1 HIGH
Local
qualcomm apq8009_firmware
apq8096au_firmware
aqt1000_firmware
ar8031_firmware
ar8035_firmware
csra6620_firmware
csra6640_firmware
csrb31024_firmware
fsm10055_firmware
fsm10056_firmw…
Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon … CWE-125
Out-of-bounds Read
CVE-2020-11304 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm
216020 9.8 CRITICAL
Network
qualcomm apq8017_firmware
apq8053_firmware
aqt1000_firmware
csrb31024_firmware
msm8917_firmware
msm8920_firmware
msm8940_firmware
msm8953_firmware
msm8976_firmware
msm8976sg_firmwar…
Possible buffer overflow while updating ikev2 parameters for delete payloads received during informational exchange due to lack of check of input validation for certain parameters received from the e… CWE-129
 Improper Validation of Array Index
CVE-2020-11291 2024-11-21 13:57 2021-06-9 Show GitHub Exploit DB Packet Storm