Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228321 5 警告 PHPSUGAR - PHP-Sugar の test/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2398 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228322 7.5 危険 smspages - Mr.Saphp Arabic Script Mobile の SMSPages における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2394 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228323 6.5 警告 Virtue Netz - Virtuenetz Virtue Online Test Generator の admin/index.php における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2393 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228324 7.5 危険 Virtue Netz - Virtuenetz Virtue Online Test Generator の text.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2392 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228325 4.3 警告 Virtue Netz - Virtuenetz Virtue Online Test Generator の text.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2391 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228326 6.8 警告 usolved - USOLVED NEWSolved の newsscript.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2389 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228327 6.8 警告 shalwan - Opial の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2388 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
228328 4.9 警告 サン・マイクロシステムズ - Sun OpenSolaris の proc filesystem におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-2387 2012-12-20 19:10 2009-07-5 Show GitHub Exploit DB Packet Storm
228329 4.3 警告 tangocms - TangoCMS の application/libraries/Html.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2376 2012-12-20 19:10 2009-07-8 Show GitHub Exploit DB Packet Storm
228330 6.8 警告 wxwidgets - wxWidgets の src/common/image.cpp における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-2369 2012-12-20 19:10 2009-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208191 5.4 MEDIUM
Network
newsoftwares folder_lock Folder Lock v3.4.5 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Create Folder function under the 'create' module. This vulnerability allows attackers to execute … CWE-79
Cross-site Scripting
CVE-2020-23039 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
208192 7.5 HIGH
Network
kumilabs swift_file_transfer Swift File Transfer Mobile v1.1.2 and below was discovered to contain an information disclosure vulnerability in the path parameter. This vulnerability is exploited via an error caused by including n… CWE-22
Path Traversal
CVE-2020-23038 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
208193 9.8 CRITICAL
Network
portable playable Portable Ltd Playable v9.18 contains a code injection vulnerability in the filename parameter, which allows attackers to execute arbitrary web scripts or HTML via a crafted POST request. CWE-94
Code Injection
CVE-2020-23037 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
208194 5.9 MEDIUM
Network
medianavi smacom MEDIA NAVI Inc SMACom v1.2 was discovered to contain an insecure session validation vulnerability in the session handling of the `password` authentication parameter of the wifi photo transfer module.… CWE-522
 Insufficiently Protected Credentials
CVE-2020-23036 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
208195 9.8 CRITICAL
Network
mercury mer1200_firmware
mer1200g_firmware
A remote command execution vulnerability exists in add_server_service of PPTP_SERVER in Mercury Router MER1200 v1.0.1 and Mercury Router MER1200G v1.0.1. CWE-78
OS Command 
CVE-2020-22724 2024-11-21 14:13 2021-10-14 Show GitHub Exploit DB Packet Storm
208196 5.5 MEDIUM
Local
gpac gpac Memory leak in the sgpd_parse_entry function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-22679 2024-11-21 14:13 2021-10-13 Show GitHub Exploit DB Packet Storm
208197 5.5 MEDIUM
Local
gpac gpac An issue was discovered in gpac 0.8.0. The gf_media_nalu_remove_emulation_bytes function in av_parsers.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted inp… CWE-787
 Out-of-bounds Write
CVE-2020-22678 2024-11-21 14:13 2021-10-13 Show GitHub Exploit DB Packet Storm
208198 5.5 MEDIUM
Local
gpac gpac An issue was discovered in gpac 0.8.0. The dump_data_hex function in box_dump.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. CWE-787
 Out-of-bounds Write
CVE-2020-22677 2024-11-21 14:13 2021-10-13 Show GitHub Exploit DB Packet Storm
208199 5.5 MEDIUM
Local
gpac gpac An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. CWE-787
 Out-of-bounds Write
CVE-2020-22675 2024-11-21 14:13 2021-10-13 Show GitHub Exploit DB Packet Storm
208200 5.5 MEDIUM
Local
gpac gpac An issue was discovered in gpac 0.8.0. An invalid memory dereference exists in the function FixTrackID located in isom_intern.c, which allows attackers to cause a denial of service (DoS) via a crafte… CWE-476
 NULL Pointer Dereference
CVE-2020-22674 2024-11-21 14:13 2021-10-13 Show GitHub Exploit DB Packet Storm