|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 30, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228351 | 7.5 | 危険 | whorl ltd | - | Joomla! 用の JShop コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3835 | 2012-12-20 19:28 | 2009-11-2 | Show | GitHub Exploit DB Packet Storm |
| 228352 | 7.5 | 危険 | webguerilla | - | Joomla! 用の Photoblog コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3834 | 2012-12-20 19:28 | 2009-11-2 | Show | GitHub Exploit DB Packet Storm |
| 228353 | 4.3 | 警告 | tftgallery | - | TFTgallery の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3833 | 2012-12-20 19:28 | 2009-11-2 | Show | GitHub Exploit DB Packet Storm |
| 228354 | 5 | 警告 | squidguard | - | squidGuard におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3826 | 2012-12-20 19:28 | 2009-10-28 | Show | GitHub Exploit DB Packet Storm |
| 228355 | 7.5 | 危険 | thomas graber | - | GenCMS におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3825 | 2012-12-20 19:28 | 2009-10-28 | Show | GitHub Exploit DB Packet Storm |
| 228356 | 10 | 危険 | Urs Maag | - | TYPO3 用の maag_randomimage エクステンションにおける任意のシェルコマンドを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3819 | 2012-12-20 19:28 | 2009-10-28 | Show | GitHub Exploit DB Packet Storm |
| 228357 | 10 | 危険 | Stanislas Rolland | - | TYPO3 用の sr_freecap エクステンションのセッションハンドリング機能における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3818 | 2012-12-20 19:28 | 2009-10-28 | Show | GitHub Exploit DB Packet Storm |
| 228358 | 5 | 警告 | runcms | - | RunCMS における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3815 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
| 228359 | 6.5 | 警告 | runcms | - | RunCMS における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3814 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
| 228360 | 6.5 | 警告 | runcms | - | RunCMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3813 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 30, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 216101 | 5.5 |
MEDIUM
Local |
heketi_project redhat |
heketi enterprise_linux gluster_storage openshift_container_platform |
An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive … |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2020-10763 | 2024-11-21 13:56 | 2020-11-25 | Show | GitHub Exploit DB Packet Storm |
| 216102 | 5.5 |
MEDIUM
Local |
redhat | gluster-block | An information-disclosure flaw was found in the way that gluster-block before 0.5.1 logs the output from gluster-block CLI operations. This includes recording passwords to the cmd_history.log file wh… |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2020-10762 | 2024-11-21 13:56 | 2020-11-25 | Show | GitHub Exploit DB Packet Storm |
| 216103 | 4.8 |
MEDIUM
Network |
redhat | keycloak | A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack. |
CWE-79
Cross-site Scripting |
CVE-2020-10776 | 2024-11-21 13:56 | 2020-11-17 | Show | GitHub Exploit DB Packet Storm |
| 216104 | 7.1 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8096au_firmware apq8098_firmware mdm8207_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9207_firmware mdm9250_firmware mdm9607_firmware<… |
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT… |
CWE-125
Out-of-bounds Read |
CVE-2020-11132 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216105 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9250_firmware mdm9628_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware qcs405_firmware… |
u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industria… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11131 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216106 | 7.8 |
HIGH
Local |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8… |
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290,… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11130 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216107 | 7.8 |
HIGH
Local |
qualcomm |
mdm9205_firmware qcm4290_firmware qcs405_firmware qcs410_firmware qcs4290_firmware qcs610_firmware qsm8250_firmware sa415m_firmware sa515m_firmware sa6145p_firmware sa61… |
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Sna… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11127 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216108 | 5.5 |
MEDIUM
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm… |
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at getting user`s lock-screen password can be bypassed by performing the st… |
NVD-CWE-Other
|
CVE-2020-11123 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216109 | 7.8 |
HIGH
Local |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8… |
u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobi… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11121 | 2024-11-21 13:56 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 216110 | 7.5 |
HIGH
Network |
protocol | ipfs | An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverage the IPFS connection management reputation system to poison other nodes' routi… |
NVD-CWE-noinfo
|
CVE-2020-10937 | 2024-11-21 13:56 | 2020-11-3 | Show | GitHub Exploit DB Packet Storm |