Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228651 9.3 危険 smartcode - SmartCode VNC Manager の VNC Viewer ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2526 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
228652 10 危険 トレンドマイクロ - Trend Micro ServerProtect におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2508 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
228653 7.8 危険 treble designs - Treble Designs 1024 CMS の includes/download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2507 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228654 7.8 危険 Progress Software Corporation - Progress Software Progress の OpenEdge におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2506 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228655 7.8 危険 リアルネットワークス - RealNetworks RealPlayer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2497 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228656 7.5 危険 postnuke software foundation - PostNuke 用の v4bJournal モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2492 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228657 7.2 危険 VMware - EMC VMware Workstation などの PIIX4 電源管理サブシステムにおける任意のメモリ領域に書き込まれる脆弱性 - CVE-2007-2491 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228658 7.5 危険 ruben boelinger - WordPress 用の myflash プラグインにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2485 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228659 6.8 警告 ruben boelinger - WordPress 用の wp-Table プラグインにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2484 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
228660 6.8 警告 ruben boelinger - WordPress 用の wp-Table プラグインにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-2483 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200651 5.5 MEDIUM
Local
boom-core risvc-boom An issue was discovered in SonicBOOM riscv-boom 3.0.0. For LR, it does not avoid acquiring a reservation in the case where a load translates successfully but still generates an exception. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-29561 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
200652 7.8 HIGH
Local
linux linux_kernel An issue was discovered in the Linux kernel before 5.9.3. io_uring takes a non-refcounted reference to the files_struct of the process that submitted a request, causing execve() to incorrectly optimi… NVD-CWE-Other
CVE-2020-29534 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
200653 7.5 HIGH
Network
hashicorp go-slug HashiCorp go-slug up to 0.4.3 did not fully protect against directory traversal while unpacking tar archives, and protections could be bypassed with specific constructions of multiple symlinks. Fixed… CWE-22
CWE-59
Path Traversal
Link Following
CVE-2020-29529 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
200654 8.8 HIGH
Network
textpattern textpattern Textpattern CMS 4.6.2 allows CSRF via the prefs subsystem. CWE-352
 Origin Validation Error
CVE-2020-29458 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
200655 4.3 MEDIUM
Network
umbraco umbraco_cms Editors/LogViewerController.cs in Umbraco through 8.9.1 allows a user to visit a logviewer endpoint even if they lack Applications.Settings access. CWE-863
 Incorrect Authorization
CVE-2020-29454 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
200656 6.1 MEDIUM
Network
papermerge papermerge Multiple cross-site scripting (XSS) vulnerabilities in Papermerge before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via the rename, tag, upload, or create folder function. Th… CWE-79
Cross-site Scripting
CVE-2020-29456 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
200657 6.5 MEDIUM
Network
outsystems outsystems An issue was discovered in the Upload Widget in OutSystems Platform 10 before 10.0.1019.0. An unauthenticated attacker can upload arbitrary files. In some cases, this attack may consume the available… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-29441 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm
200658 4.6 MEDIUM
Physics
tesla model_x_firmware Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control module (BCM). This allows an attacker (who is inside a veh… CWE-295
Improper Certificate Validation 
CVE-2020-29440 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm
200659 4.6 MEDIUM
Physics
tesla model_x_firmware Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module (BCM) to initiate a Bluetooth wake-up action. (The full VIN… NVD-CWE-noinfo
CVE-2020-29439 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm
200660 6.5 MEDIUM
Adjacent
tesla model_x_firmware Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification. This allows attackers to construct firmware that retrieves an unlock code from a se… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2020-29438 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm