Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229261 6.8 警告 technotoad - TT Web Site Manager の tt/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4732 2012-12-20 19:28 2010-03-18 Show GitHub Exploit DB Packet Storm
229262 7.5 危険 x10media - x10 Adult Media Script の report.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4730 2012-12-20 19:28 2010-03-18 Show GitHub Exploit DB Packet Storm
229263 4.3 警告 x10media - x10 Adult Media Script におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4729 2012-12-20 19:28 2010-03-18 Show GitHub Exploit DB Packet Storm
229264 7.5 危険 questions answered - Questions Answered の管理インターフェースにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4728 2012-12-20 19:28 2010-03-18 Show GitHub Exploit DB Packet Storm
229265 4.3 警告 phpscriptsnow - Real Time Currency Exchange の rates.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4715 2012-12-20 19:28 2010-03-15 Show GitHub Exploit DB Packet Storm
229266 7.5 危険 tukanas - Tukanas Classifieds Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4712 2012-12-20 19:28 2010-03-15 Show GitHub Exploit DB Packet Storm
229267 4.3 警告 Pligg - Pligg におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2009-4788 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
229268 6.8 警告 Pligg - Pligg におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4787 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
229269 4.3 警告 Pligg - Pligg におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4786 2012-12-20 19:28 2009-11-30 Show GitHub Exploit DB Packet Storm
229270 4.3 警告 phpMyFAQ - phpMyFAQ の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4780 2012-12-20 19:28 2009-12-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202521 5.5 MEDIUM
Local
brave brave The implementation of Brave Desktop's privacy-preserving analytics system (P3A) between 1.1 and 1.18.35 logged the timestamp of when the user last opened an incognito window, including Tor windows. T… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-8276 2024-11-21 14:38 2020-11-10 Show GitHub Exploit DB Packet Storm
202522 5.3 MEDIUM
Network
ui unifi_protect_firmware A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi Protect controller API was using “x-token” improperly, allowing attackers to use the API to… CWE-287
Improper Authentication
CVE-2020-8267 2024-11-21 14:38 2020-11-6 Show GitHub Exploit DB Packet Storm
202523 7.5 HIGH
Network
tcpdump
debian
fedoraproject
apple
tcpdump
debian_linux
fedora
mac_os_x
macos
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-8037 2024-11-21 14:38 2020-11-5 Show GitHub Exploit DB Packet Storm
202524 7.5 HIGH
Network
tcpdump tcpdump The tok2strbuf() function in tcpdump 4.10.0-PRE-GIT was used by the SOME/IP dissector in an unsafe way. CWE-125
Out-of-bounds Read
CVE-2020-8036 2024-11-21 14:38 2020-11-5 Show GitHub Exploit DB Packet Storm
202525 6.8 MEDIUM
Physics
nextcloud nextcloud_server A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor verification by asking for the PIN of the passwordless WebAuthn but not … CWE-287
Improper Authentication
CVE-2020-8236 2024-11-21 14:38 2020-11-3 Show GitHub Exploit DB Packet Storm
202526 7.5 HIGH
Network
nextcloud nextcloud_server A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share password when it was given on the initial create API call. CWE-522
 Insufficiently Protected Credentials
CVE-2020-8183 2024-11-21 14:38 2020-11-3 Show GitHub Exploit DB Packet Storm
202527 2.2 LOW
Network
nextcloud nextcloud_server A too small set of random characters being used for encryption in Nextcloud Server 18.0.4 allowed decryption in shorter time than intended. CWE-311
Missing Encryption of Sensitive Data
CVE-2020-8173 2024-11-21 14:38 2020-11-3 Show GitHub Exploit DB Packet Storm
202528 5.4 MEDIUM
Network
pulsesecure pulse_secure_desktop_client A vulnerability in the authenticated user web interface of Pulse Connect Secure < 9.1R9 could allow attackers to conduct Cross-Site Scripting (XSS) through the CGI file. CWE-79
Cross-site Scripting
CVE-2020-8263 2024-11-21 14:38 2020-10-28 Show GitHub Exploit DB Packet Storm
202529 6.1 MEDIUM
Network
pulsesecure
ivanti
pulse_connect_secure
pulse_policy_secure
policy_secure
connect_secure
A vulnerability in the Pulse Connect Secure / Pulse Policy Secure below 9.1R9 could allow attackers to conduct Cross-Site Scripting (XSS) and Open Redirection for authenticated user web interface. CWE-79
Cross-site Scripting
CVE-2020-8262 2024-11-21 14:38 2020-10-28 Show GitHub Exploit DB Packet Storm
202530 4.3 MEDIUM
Network
pulsesecure
ivanti
pulse_connect_secure
pulse_policy_secure
policy_secure
connect_secure
A vulnerability in the Pulse Connect Secure / Pulse Policy Secure < 9.1R9 is vulnerable to arbitrary cookie injection. CWE-120
Classic Buffer Overflow
CVE-2020-8261 2024-11-21 14:38 2020-10-28 Show GitHub Exploit DB Packet Storm