Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228871 4.3 警告 s9y - Serendipity 用の mycalendar プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-6390 2012-12-20 18:34 2007-12-17 Show GitHub Exploit DB Packet Storm
228872 7.2 危険 トレンドマイクロ - Trend Micro AntiVirus などの PccScan.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6386 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228873 6.8 警告 robocode - Robocode の Event Dispatch Thread における任意の Java コードを実行される脆弱性 CWE-DesignError
CVE-2007-6382 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228874 6.5 警告 TYPO3 Association - TYPO3 用の indexed_search システムエクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6381 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228875 5 警告 WordPress.org - WordPress 用の PictPress プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6369 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228876 4.3 警告 sinecms - SineCMS の guestbook におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6367 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228877 7.5 危険 sinecms - SineCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6366 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228878 7.8 危険 サン・マイクロシステムズ - Sun XSCF XCP におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6360 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
228879 8.5 危険 scponly - scponly におけるコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6350 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
228880 6.8 警告 SquirrelMail Project - SquirrelMail における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6348 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196011 3.1 LOW
Network
kubernetes kubernetes As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessing link-local or localhost networks when making user-driven connections to Servi… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2020-8562 2024-11-21 14:39 2022-02-1 Show GitHub Exploit DB Packet Storm
196012 6.5 MEDIUM
Adjacent
aeotec
samsung
zooz
silabs
zw090-a
sth-eth-200
zst10
uzb-7
700_series_firmware
500_series_firmware
Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung … NVD-CWE-noinfo
CVE-2020-9061 2024-11-21 14:39 2022-01-10 Show GitHub Exploit DB Packet Storm
196013 6.5 MEDIUM
Adjacent
silabs
aeotec
zooz
fibaro
500_series_firmware
zw090-a
zst10
zen20
zen25
fgwpb-111
Z-Wave devices based on Silicon Labs 500 series chipsets using S2, including but likely not limited to the ZooZ ZST10 version 6.04, ZooZ ZEN20 version 5.03, ZooZ ZEN25 version 5.03, Aeon Labs ZW090-A… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-9060 2024-11-21 14:39 2022-01-10 Show GitHub Exploit DB Packet Storm
196014 6.5 MEDIUM
Adjacent
silabs
schlage
500_series_firmware
be468
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible to uncontrolled resource consumption leading to battery exhaustion. As an example, the Schlage BE468 v… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-9059 2024-11-21 14:39 2022-01-10 Show GitHub Exploit DB Packet Storm
196015 8.1 HIGH
Adjacent
silabs
jasco
dome
linear
500_series_firmware
zw4201
dm501
lb60z-1
Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to the Linear LB60Z-1 version 3.5, Dome DM501 version 4.26, and Jasco ZW4201 vers… CWE-311
Missing Encryption of Sensitive Data
CVE-2020-9058 2024-11-21 14:39 2022-01-10 Show GitHub Exploit DB Packet Storm
196016 8.8 HIGH
Adjacent
linear
silabs
wapirz-1
wadwaz-1
100_series_firmware
200_series_firmware
300_series_firmware
Z-Wave devices based on Silicon Labs 100, 200, and 300 series chipsets do not support encryption, allowing an attacker within radio range to take control of or cause a denial of service to a vulnerab… CWE-311
Missing Encryption of Sensitive Data
CVE-2020-9057 2024-11-21 14:39 2022-01-10 Show GitHub Exploit DB Packet Storm
196017 7.1 HIGH
Local
parallels remote_application_server Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text format by uploading a previously stored cyphered file by Parallels RAS. The confid… NVD-CWE-Other
CVE-2020-8968 2024-11-21 14:39 2021-12-18 Show GitHub Exploit DB Packet Storm
196018 7.8 HIGH
Local
intel thunderbolt_non-dch_driver Improper permissions in the installer for the Intel(R) Thunderbolt(TM) non-DCH driver, all versions, for Windows may allow an authenticated user to potentially enable escalation of privilege via loca… CWE-276
Incorrect Default Permissions 
CVE-2020-8741 2024-11-21 14:39 2021-11-18 Show GitHub Exploit DB Packet Storm
196019 4.1 MEDIUM
Network
kubernetes kubernetes A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver re… CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2020-8561 2024-11-21 14:39 2021-09-21 Show GitHub Exploit DB Packet Storm
196020 7.5 HIGH
Network
iportalis iportalis_control_portal An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN to UserRoleKey=DOMAIN_ADMIN (to achieve Domain Admi… CWE-20
 Improper Input Validation 
CVE-2020-9002 2024-11-21 14:39 2021-09-1 Show GitHub Exploit DB Packet Storm