Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228661 6.8 警告 sjoerd arendsen - Drupal 用モジュールの Simplenews Statistics におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-3785 2012-12-20 19:28 2009-10-26 Show GitHub Exploit DB Packet Storm
228662 6.8 警告 sjoerd arendsen - Drupal 用モジュールの Simplenews Statistics におけるオープンリダイレクトの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-3784 2012-12-20 19:28 2009-10-26 Show GitHub Exploit DB Packet Storm
228663 4.3 警告 sjoerd arendsen - Drupal 用モジュールの Simplenews Statistics におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3783 2012-12-20 19:28 2009-10-26 Show GitHub Exploit DB Packet Storm
228664 7.5 危険 quicksketch - Drupal 用の FileField モジュールにおける許可されていないファイルにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3781 2012-12-20 19:28 2009-10-21 Show GitHub Exploit DB Packet Storm
228665 4.3 警告 stefan auditor - Drupal 用の vCard モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3779 2012-12-20 19:28 2009-10-21 Show GitHub Exploit DB Packet Storm
228666 7.5 危険 santostefano giovanni - ToyLog の read.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3750 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
228667 5 警告 ウェブセンス - Websense Personal Email Manager および Email Security の Web Administrator サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-3749 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
228668 4.3 警告 ウェブセンス - Websense Personal Email Manager および Email Security の Web Administrator におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3748 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
228669 4.3 警告 tbmnet - TBmnetCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3747 2012-12-20 19:28 2009-10-22 Show GitHub Exploit DB Packet Storm
228670 10 危険 riorey - RioRey RIOS における権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-3710 2012-12-20 19:28 2009-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
216161 5.5 MEDIUM
Local
intel dsl5320_thunderbolt_2_firmware
dsl5520_thunderbolt_2_firmware
dsl6340_thunderbolt_3_firmware
dsl6540_thunderbolt_3_firmware
jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmwar…
Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-12296 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216162 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Improper input validation in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. CWE-20
 Improper Input Validation 
CVE-2020-12295 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216163 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Insufficient control flow management in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. NVD-CWE-Other
CVE-2020-12294 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216164 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Improper control of a resource through its lifetime in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. NVD-CWE-Other
CVE-2020-12293 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216165 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Improper conditions check in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-12292 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216166 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-12291 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216167 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Improper access control in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. NVD-CWE-Other
CVE-2020-12290 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216168 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Out-of-bounds write in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. CWE-787
 Out-of-bounds Write
CVE-2020-12289 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216169 5.5 MEDIUM
Local
intel jhl6240_thunderbolt_3_firmware
jhl6340_thunderbolt_3_firmware
jhl6540_thunderbolt_3_firmware
jhl7040_thunderbolt_3_retimer_firmware
jhl7340_thunderbolt_3_firmware
jhl7440_thunderbolt_3…
Protection mechanism failure in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access. NVD-CWE-Other
CVE-2020-12288 2024-11-21 13:59 2021-06-10 Show GitHub Exploit DB Packet Storm
216170 9.1 CRITICAL
Network
mozilla nss A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly di… CWE-125
Out-of-bounds Read
CVE-2020-12403 2024-11-21 13:59 2021-05-28 Show GitHub Exploit DB Packet Storm