Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229261 4.3 警告 WordPress.org - WordPress の Temporary Uploads 編集機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4139 2012-12-20 18:33 2007-08-3 Show GitHub Exploit DB Packet Storm
229262 6.5 警告 レッドハット - Red Hat Network Satellite Server における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2007-4132 2012-12-20 18:33 2007-08-29 Show GitHub Exploit DB Packet Storm
229263 7.5 危険 suskunduygular - SuskunDuygular Uyelik Sistemi の unuttum.asp における SQL インジェクションの脆弱性 - CVE-2007-4114 2012-12-20 18:33 2007-07-31 Show GitHub Exploit DB Packet Storm
229264 7.5 危険 phpmyforum - phpMyForum の editpost.php における SQL インジェクションの脆弱性 - CVE-2007-4107 2012-12-20 18:33 2007-06-7 Show GitHub Exploit DB Packet Storm
229265 4.3 警告 sblog - sBlog の search.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4102 2012-12-20 18:33 2007-07-31 Show GitHub Exploit DB Packet Storm
229266 5.8 警告 The Tor Project - Tor における重要な情報を取得される脆弱性 - CVE-2007-4099 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
229267 5.8 警告 The Tor Project - Tor における任意のストリームへセルを挿入される脆弱性 - CVE-2007-4098 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
229268 6.4 警告 The Tor Project - Tor における仕様に反して重要な情報を取得される脆弱性 - CVE-2007-4097 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
229269 5.8 警告 The Tor Project - Tor におけるバッファオーバーフローの脆弱性 - CVE-2007-4096 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
229270 6.8 警告 rsync.samba.org - rsync の sender.c における任意のコードを実行される脆弱性 - CVE-2007-4091 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200771 6.1 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component sys_admin_user_edit.php via the `filename`, `mid`, `userid`, and `templet' parameters. CWE-79
Cross-site Scripting
CVE-2020-36496 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200772 6.1 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_manage_view.php via the `filename`, `mid`, `userid`, and `templet' parameters. CWE-79
Cross-site Scripting
CVE-2020-36495 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200773 6.1 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component mychannel_edit.php via the `filename`, `mid`, `userid`, and `templet' parameters. CWE-79
Cross-site Scripting
CVE-2020-36494 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200774 5.4 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component media_main.php via the `activepath`, `keyword`, `tag`, `fmdo=x&filename`, `CKEditor` an… CWE-79
Cross-site Scripting
CVE-2020-36493 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200775 5.4 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component select_media.php via the `activepath`, `keyword`, `tag`, `fmdo=x&filename`, `CKEditor` … CWE-79
Cross-site Scripting
CVE-2020-36492 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200776 5.4 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tags_main.php via the `activepath`, `keyword`, `tag`, `fmdo=x&filename`, `CKEditor` and… CWE-79
Cross-site Scripting
CVE-2020-36491 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200777 5.4 MEDIUM
Network
dedecms dedecms DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_manage_view.php via the `activepath`, `keyword`, `tag`, `fmdo=x&filename`, `CKEdit… CWE-79
Cross-site Scripting
CVE-2020-36490 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200778 5.4 MEDIUM
Network
dropouts air_share Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the devicename parameter. This vulnerability allows attackers to execute arbitrary web… CWE-79
Cross-site Scripting
CVE-2020-36489 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200779 6.5 MEDIUM
Network
sky_file_project sky_file An issue in the FTP server of Sky File v2.1.0 allows attackers to perform directory traversal via `/null//` path commands. CWE-22
Path Traversal
CVE-2020-36488 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm
200780 6.1 MEDIUM
Network
swiftfiletransfer swift_file_transfer Swift File Transfer Mobile v1.1.2 and below was discovered to contain a cross-site scripting (XSS) vulnerability via the 'path' parameter of the 'list' and 'download' exception-handling. CWE-79
Cross-site Scripting
CVE-2020-36486 2024-11-21 14:29 2021-10-23 Show GitHub Exploit DB Packet Storm