Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228621 4.3 警告 tinx cms - TinX/cms の admin/objects/obj_image.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2975 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228622 7.5 危険 yektaweb - AWT YEKTA におけるセッションをハイジャックされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-2970 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228623 5 警告 yektaweb - AWT YEKTA の download.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2969 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228624 7.5 危険 yektaweb - AWT YEKTA の rating.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2968 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228625 4.3 警告 yektaweb - AWT YEKTA におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2967 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228626 7.5 危険 researchguide - ResearchGuide の guide.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2964 2012-12-20 18:52 2008-07-2 Show GitHub Exploit DB Packet Storm
228627 2.6 注意 The phpMyAdmin Project - phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2960 2012-12-20 18:52 2008-06-23 Show GitHub Exploit DB Packet Storm
228628 5.8 警告 Edgewall Software - Trac の検索スクリプトにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2008-2951 2012-12-20 18:52 2008-07-27 Show GitHub Exploit DB Packet Storm
228629 7.5 危険 freedesktop.org - Poppler の libpoppler における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2950 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
228630 7.5 危険 サン・マイクロシステムズ - Sun Java System Access Manager および Sun Java System Identity Server における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2945 2012-12-20 18:52 2008-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209081 8.8 HIGH
Network
google chrome Use after free in extensions in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2020-16039 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209082 8.8 HIGH
Network
google chrome Use after free in media in Google Chrome on OS X prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2020-16038 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209083 8.8 HIGH
Network
google chrome Use after free in clipboard in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2020-16037 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209084 6.5 MEDIUM
Network
google chrome Inappropriate implementation in cookies in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to bypass cookie restrictions via a crafted HTML page. NVD-CWE-noinfo
CVE-2020-16036 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209085 8.8 HIGH
Network
google chrome Insufficient data validation in cros-disks in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the browser process to bypass noexec restrictions via a mal… NVD-CWE-noinfo
CVE-2020-16035 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209086 4.3 MEDIUM
Network
google chrome Inappropriate implementation in WebRTC in Google Chrome prior to 87.0.4280.66 allowed a local attacker to bypass policy restrictions via a crafted HTML page. NVD-CWE-noinfo
CVE-2020-16034 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209087 4.3 MEDIUM
Network
google chrome Inappropriate implementation in WebUSB in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof security UI via a crafted HTML page. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-16033 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209088 4.3 MEDIUM
Network
google chrome Insufficient data validation in sharing in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-16032 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209089 4.3 MEDIUM
Network
google chrome Insufficient data validation in UI in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-16031 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm
209090 6.1 MEDIUM
Network
google chrome Insufficient data validation in Blink in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. CWE-79
Cross-site Scripting
CVE-2020-16030 2024-11-21 14:06 2021-01-9 Show GitHub Exploit DB Packet Storm