Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229001 7.5 危険 t-com - T-Com Speedport 500V ルータにおける認証を回避され脆弱性 - CVE-2007-0435 2012-12-20 18:19 2007-01-22 Show GitHub Exploit DB Packet Storm
229002 5 警告 wzdftpd - WzdFTPD の hash.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0428 2012-12-20 18:19 2007-01-22 Show GitHub Exploit DB Packet Storm
229003 6.8 警告 plain black - Plain Black WebGUI の Operation/User.pm におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0407 2012-12-20 18:19 2007-01-22 Show GitHub Exploit DB Packet Storm
229004 6 警告 Simple Machines - SMF の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0399 2012-12-20 18:19 2007-01-22 Show GitHub Exploit DB Packet Storm
229005 4.6 警告 サン・マイクロシステムズ - Sun Solaris における権限を取得される脆弱性 - CVE-2007-0393 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
229006 6.8 警告 sabros.us - sabros.us の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0390 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
229007 7.5 危険 woltlab - wBB の search.php における SQL インジェクションの脆弱性 - CVE-2007-0388 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
229008 10 危険 postnuke software foundation - PostNuke の rating セクションにおける脆弱性 - CVE-2007-0386 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
229009 7.8 危険 postnuke software foundation - PostNuke の faq セクションにおける重要な情報を取得される脆弱性 - CVE-2007-0385 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
229010 5.1 警告 postnuke software foundation - PostNuke のプレビューにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0384 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199521 6.1 MEDIUM
Network
openstack
debian
horizon
debian_linux
An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation of the "next" parameter, which would all… CWE-601
Open Redirect
CVE-2020-29565 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
199522 4.8 MEDIUM
Network
gnu
fedoraproject
netapp
glibc
fedora
e-series_santricity_os_controller
The iconv function in the GNU C Library (aka glibc or libc6) 2.30 to 2.32, when converting UCS4 text containing an irreversible character, fails an assertion in the code path and aborts the program, … CWE-617
 Reachable Assertion
CVE-2020-29562 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
199523 5.5 MEDIUM
Local
boom-core risvc-boom An issue was discovered in SonicBOOM riscv-boom 3.0.0. For LR, it does not avoid acquiring a reservation in the case where a load translates successfully but still generates an exception. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-29561 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
199524 7.8 HIGH
Local
linux linux_kernel An issue was discovered in the Linux kernel before 5.9.3. io_uring takes a non-refcounted reference to the files_struct of the process that submitted a request, causing execve() to incorrectly optimi… NVD-CWE-Other
CVE-2020-29534 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
199525 7.5 HIGH
Network
hashicorp go-slug HashiCorp go-slug up to 0.4.3 did not fully protect against directory traversal while unpacking tar archives, and protections could be bypassed with specific constructions of multiple symlinks. Fixed… CWE-22
CWE-59
Path Traversal
Link Following
CVE-2020-29529 2024-11-21 14:24 2020-12-4 Show GitHub Exploit DB Packet Storm
199526 8.8 HIGH
Network
textpattern textpattern Textpattern CMS 4.6.2 allows CSRF via the prefs subsystem. CWE-352
 Origin Validation Error
CVE-2020-29458 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
199527 4.3 MEDIUM
Network
umbraco umbraco_cms Editors/LogViewerController.cs in Umbraco through 8.9.1 allows a user to visit a logviewer endpoint even if they lack Applications.Settings access. CWE-863
 Incorrect Authorization
CVE-2020-29454 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
199528 6.1 MEDIUM
Network
papermerge papermerge Multiple cross-site scripting (XSS) vulnerabilities in Papermerge before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via the rename, tag, upload, or create folder function. Th… CWE-79
Cross-site Scripting
CVE-2020-29456 2024-11-21 14:24 2020-12-2 Show GitHub Exploit DB Packet Storm
199529 6.5 MEDIUM
Network
outsystems outsystems An issue was discovered in the Upload Widget in OutSystems Platform 10 before 10.0.1019.0. An unauthenticated attacker can upload arbitrary files. In some cases, this attack may consume the available… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-29441 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm
199530 4.6 MEDIUM
Physics
tesla model_x_firmware Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control module (BCM). This allows an attacker (who is inside a veh… CWE-295
Improper Certificate Validation 
CVE-2020-29440 2024-11-21 14:24 2020-12-1 Show GitHub Exploit DB Packet Storm