Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228241 4.3 警告 Scriptsez.net - Scriptsez.net EPH におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4384 2012-12-20 19:28 2009-12-22 Show GitHub Exploit DB Packet Storm
228242 4.3 警告 phpfaber - PHPFABER CMS の module.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4382 2012-12-20 19:28 2009-12-22 Show GitHub Exploit DB Packet Storm
228243 4.3 警告 texmedia - texmedia Million Pixel Script の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4381 2012-12-20 19:28 2009-12-22 Show GitHub Exploit DB Packet Storm
228244 7.5 危険 Wafer - Valarsoft Webmatic における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4380 2012-12-20 19:28 2009-12-14 Show GitHub Exploit DB Packet Storm
228245 4.3 警告 Wafer - Valarsoft Webmatic におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4379 2012-12-20 19:28 2009-12-14 Show GitHub Exploit DB Packet Storm
228246 4.3 警告 Wireshark - Windows 上で稼動している Wireshark の IPMI 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-4378 2012-12-20 19:28 2009-12-17 Show GitHub Exploit DB Packet Storm
228247 9.3 危険 Wireshark - Wireshark の Daintree SNA ファイルパーサーにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4376 2012-12-20 19:28 2009-12-4 Show GitHub Exploit DB Packet Storm
228248 6.8 警告 Sitecore - Sitecore Staging Module の Staging Webservice における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4367 2012-12-20 19:28 2009-12-21 Show GitHub Exploit DB Packet Storm
228249 4.3 警告 Scriptsez.net - ScriptsEz Ez Blog の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4366 2012-12-20 19:28 2009-12-21 Show GitHub Exploit DB Packet Storm
228250 4.3 警告 Scriptsez.net - ScriptsEz Ez Blog の admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4365 2012-12-20 19:28 2009-12-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202651 9.8 CRITICAL
Network
onethird onethird Local file inclusion vulnerability in OneThird CMS v1.96c and earlier allows a remote unauthenticated attacker to execute arbitrary code or obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2020-5640 2024-11-21 14:34 2020-10-20 Show GitHub Exploit DB Packet Storm
202652 8.8 HIGH
Network
onwebchat live_chat_-_live_support Cross-site request forgery (CSRF) vulnerability in Live Chat - Live support version 3.1.0 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. CWE-352
 Origin Validation Error
CVE-2020-5642 2024-11-21 14:34 2020-10-15 Show GitHub Exploit DB Packet Storm
202653 6.5 MEDIUM
Network
dell emc_openmanage_integration_for_microsoft_system_center Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain an information disclosure vulnerability. Authenticated low privileged OMIMSCC … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-5389 2024-11-21 14:34 2020-10-9 Show GitHub Exploit DB Packet Storm
202654 8.8 HIGH
Adjacent
elecom wrc-2533gst2_firmware
wrc-1900gst2_firmware
wrc-1750gst2_firmware
wrc-1167gst2_firmware
ELECOM LAN routers (WRC-2533GST2 firmware versions prior to v1.14, WRC-1900GST2 firmware versions prior to v1.14, WRC-1750GST2 firmware versions prior to v1.14, and WRC-1167GST2 firmware versions pri… NVD-CWE-noinfo
CVE-2020-5634 2024-11-21 14:34 2020-10-6 Show GitHub Exploit DB Packet Storm
202655 7.8 HIGH
Local
nec infocage_siteshell InfoCage SiteShell series (Host type SiteShell for IIS V1.4, V1.5, and V1.6, Host type SiteShell for IIS prior to revision V2.0.0.6, V2.1.0.7, V2.1.1.6, V3.0.0.11, V4.0.0.6, V4.1.0.5, and V4.2.0.1, H… NVD-CWE-noinfo
CVE-2020-5632 2024-11-21 14:34 2020-10-6 Show GitHub Exploit DB Packet Storm
202656 6.1 MEDIUM
Network
cmonos cmonos Stored cross-site scripting vulnerability in CMONOS.JP ver2.0.20191009 and earlier allows remote attackers to inject arbitrary script via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2020-5631 2024-11-21 14:34 2020-10-6 Show GitHub Exploit DB Packet Storm
202657 5.5 MEDIUM
Local
nvidia virtual_gpu_manager NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of service. This affects vGPU version 8.x (prior to 8.5), … CWE-476
 NULL Pointer Dereference
CVE-2020-5989 2024-11-21 14:34 2020-10-3 Show GitHub Exploit DB Packet Storm
202658 7.1 HIGH
Local
nvidia virtual_gpu_manager NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which allocated memory can be freed twice, which may lead to information disclosure or denial of service. This affects vGPU … CWE-415
 Double Free
CVE-2020-5988 2024-11-21 14:34 2020-10-3 Show GitHub Exploit DB Packet Storm
202659 7.8 HIGH
Local
nvidia virtual_gpu_manager NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin in which guest-supplied parameters remain writable by the guest after the plugin has validated them, which may lead to the guest… CWE-459
 Incomplete Cleanup
CVE-2020-5987 2024-11-21 14:34 2020-10-3 Show GitHub Exploit DB Packet Storm
202660 5.5 MEDIUM
Local
nvidia virtual_gpu_manager NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, which may lead to tampering or denial of service. This affects vGPU version 8.x (… CWE-20
 Improper Input Validation 
CVE-2020-5986 2024-11-21 14:34 2020-10-3 Show GitHub Exploit DB Packet Storm