Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228951 7.5 危険 phpauctions - PHPAuctions.info PHPAuctions の profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6663 2012-12-20 19:10 2009-04-8 Show GitHub Exploit DB Packet Storm
228952 4.3 警告 structum - InfoBiz Server の search_results.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6654 2012-12-20 19:10 2009-04-7 Show GitHub Exploit DB Packet Storm
228953 7.5 危険 wh-com - Joomla! および Mambo 用の webhosting.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6653 2012-12-20 19:10 2009-04-7 Show GitHub Exploit DB Packet Storm
228954 8.8 危険 versalsoft - Versalsoft HTTP Image Uploader ActiveX コントロールにおける任意のファイルを削除される脆弱性 CWE-16
環境設定
CVE-2008-6638 2012-12-20 19:10 2009-04-7 Show GitHub Exploit DB Packet Storm
228955 7.8 危険 TYPO3 Association - TYPO3 用の wt_gallery エクステンションにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6630 2012-12-20 19:10 2009-04-7 Show GitHub Exploit DB Packet Storm
228956 4.3 警告 webbdomain - WEBBDOMAIN Multi Languages WebShop Online の detail.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6629 2012-12-20 19:10 2009-04-6 Show GitHub Exploit DB Packet Storm
228957 7.5 危険 webbdomain - WEBBDOMAIN WebShop の getin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6627 2012-12-20 19:10 2009-04-6 Show GitHub Exploit DB Packet Storm
228958 7.5 危険 webbdomain - WEBBDOMAIN Quiz の getin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6626 2012-12-20 19:10 2009-04-6 Show GitHub Exploit DB Packet Storm
228959 7.5 危険 webbdomain - WEBBDOMAIN Polls の getin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6625 2012-12-20 19:10 2009-04-6 Show GitHub Exploit DB Packet Storm
228960 7.5 危険 webbdomain - WEBBDOMAIN Petition の getin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6624 2012-12-20 19:10 2009-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208471 7.5 HIGH
Network
portfoliocms_project portfoliocms Westbrookadmin portfolioCMS v1.05 allows attackers to bypass password validation and access sensitive information via session fixation. CWE-287
Improper Authentication
CVE-2020-20402 2024-11-21 14:12 2023-02-1 Show GitHub Exploit DB Packet Storm
208472 8.8 HIGH
Network
ibarn_project ibarn File upload vulnerability in function upload in action/Core.class.php in zhimengzhe iBarn 1.5 allows remote attackers to run arbitrary code via avatar upload to index.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-20588 2024-11-21 14:12 2022-12-16 Show GitHub Exploit DB Packet Storm
208473 5.5 MEDIUM
Local
artifex mupdf A Use After Free vulnerability in svg_dev_text_span_as_paths_defs function in source/fitz/svg-device.c in Artifex Software MuPDF 1.16.0 allows remote attackers to cause a denial of service via openin… CWE-416
 Use After Free
CVE-2020-21896 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208474 7.8 HIGH
Local
artifex ghostscript Buffer Overflow vulnerability in clj_media_size function in devices/gdevclj.c in Artifex Ghostscript 9.50 allows remote attackers to cause a denial of service or other unspecified impact(s) via openi… CWE-787
 Out-of-bounds Write
CVE-2020-21890 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208475 5.5 MEDIUM
Local
ogg_video_tools_project ogg_video_tools A Segmentation Fault issue discovered StreamSerializer::extractStreams function in streamSerializer.cpp in oggvideotools 0.9.1 allows remote attackers to cause a denial of service (crash) via opening… NVD-CWE-noinfo
CVE-2020-21723 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208476 7.8 HIGH
Local
ogg_video_tools_project ogg_video_tools Buffer Overflow vulnerability in oggvideotools 0.9.1 allows remote attackers to run arbitrary code via opening of crafted ogg file. CWE-416
 Use After Free
CVE-2020-21722 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208477 5.5 MEDIUM
Local
artifex ghostscript A divide by zero issue discovered in eps_print_page in gdevepsn.c in Artifex Software GhostScript 9.50 allows remote attackers to cause a denial of service via opening of crafted PDF file. CWE-369
 Divide By Zero
CVE-2020-21710 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208478 7.5 HIGH
Network
alibaba tengine The web server Tengine 2.2.2 developed in the Nginx version from 0.5.6 thru 1.13.2 is vulnerable to an integer overflow vulnerability in the nginx range filter module, resulting in the leakage of pot… CWE-190
 Integer Overflow or Wraparound
CVE-2020-21699 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208479 5.5 MEDIUM
Local
nasm netwide_assembler Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file. CWE-787
 Out-of-bounds Write
CVE-2020-21687 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
208480 5.5 MEDIUM
Local
nasm netwide_assembler A stack-use-after-scope issue discovered in expand_mmac_params function in preproc.c in nasm before 2.15.04 allows remote attackers to cause a denial of service via crafted asm file. NVD-CWE-Other
CVE-2020-21686 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm