Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228791 6.8 警告 Simple Machines - SMF の index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6657 2012-12-20 19:10 2008-11-7 Show GitHub Exploit DB Packet Storm
228792 7.5 危険 phpcredo - PHCDownload の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6596 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228793 7.5 危険 TYPO3 Association - TYPO3 用の pmk_rssnewsexport エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6595 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228794 7.5 危険 TYPO3 Association - TYPO3 用の cm_rdfexport エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6594 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228795 6.8 警告 Vuze, Inc. - Vuze の index.tmpl におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6587 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228796 6.8 警告 BitTorrent, Inc. - uTorrent WebUI の gui/index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6586 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228797 6.8 警告 TorrentFlux - TorrentFlux の html/admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6585 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228798 6 警告 TorrentFlux - TorrentFlux の html/index.php における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-6584 2012-12-20 19:10 2009-04-3 Show GitHub Exploit DB Packet Storm
228799 6.8 警告 yehe - Yehe における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6568 2012-12-20 19:10 2009-03-31 Show GitHub Exploit DB Packet Storm
228800 10 危険 puppetmaster - The Puppet Master WebUtil の cgi-bin/webutil.pl における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6557 2012-12-20 19:10 2009-03-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208501 7.0 HIGH
Local
gnu
redhat
canonical
glibc
enterprise_linux
ubuntu_linux
An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when stor… CWE-787
 Out-of-bounds Write
CVE-2020-1751 2024-11-21 14:11 2020-04-18 Show GitHub Exploit DB Packet Storm
208502 9.8 CRITICAL
Network
apache heron It was noticed that Apache Heron 0.20.2-incubating, Release 0.20.1-incubating, and Release v-0.20.0-incubating does not configure its YAML parser to prevent the instantiation of arbitrary types, resu… CWE-502
 Deserialization of Untrusted Data
CVE-2020-1964 2024-11-21 14:11 2020-04-17 Show GitHub Exploit DB Packet Storm
208503 8.6 HIGH
Network
juniper junos
junos_os_evolved
In a certain condition, receipt of a specific BGP UPDATE message might cause Juniper Networks Junos OS and Junos OS Evolved devices to advertise an invalid BGP UPDATE message to other peers, causing … CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-1632 2024-11-21 14:11 2020-04-16 Show GitHub Exploit DB Packet Storm
208504 5.3 MEDIUM
Network
libssh
canonical
netapp
redhat
fedoraproject
oracle
libssh
ubuntu_linux
cloud_backup
enterprise_linux
fedora
mysql_workbench
A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabled) ciphers. The server or client could crash when the connection hasn't been f… CWE-476
 NULL Pointer Dereference
CVE-2020-1730 2024-11-21 14:11 2020-04-14 Show GitHub Exploit DB Packet Storm
208505 5.5 MEDIUM
Local
huawei mate_30_pro_firmware
mate_30_firmware
There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the caller's identity in certain share scenario, succ… CWE-287
Improper Authentication
CVE-2020-1801 2024-11-21 14:11 2020-04-11 Show GitHub Exploit DB Packet Storm
208506 7.8 HIGH
Local
facebook instagram A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects versions prior to 128.0.0.26.128. CWE-190
 Integer Overflow or Wraparound
CVE-2020-1895 2024-11-21 14:11 2020-04-10 Show GitHub Exploit DB Packet Storm
208507 7.8 HIGH
Local
oculus desktop Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges… CWE-59
Link Following
CVE-2020-1885 2024-11-21 14:11 2020-04-9 Show GitHub Exploit DB Packet Storm
208508 5.5 MEDIUM
Local
juniper junos_os_evolved A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via raw objmon configuration files. This issue affects all versions of Junos OS Evolved prior… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-1624 2024-11-21 14:11 2020-04-9 Show GitHub Exploit DB Packet Storm
208509 5.5 MEDIUM
Local
juniper junos_os_evolved A local, authenticated user with shell can view sensitive configuration information via the ev.ops configuration file. This issue affects all versions of Junos OS Evolved prior to 19.2R1. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-1623 2024-11-21 14:11 2020-04-9 Show GitHub Exploit DB Packet Storm
208510 5.5 MEDIUM
Local
juniper junos_os_evolved A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affects all versions of Junos OS Evolved prior to 19.1R… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-1622 2024-11-21 14:11 2020-04-9 Show GitHub Exploit DB Packet Storm