Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229291 7.2 危険 The Tor Project - Tor における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5397 2012-12-20 18:52 2008-12-8 Show GitHub Exploit DB Packet Storm
229292 10 危険 privacy-cd - UPR-Kernel の UPR における分離メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5393 2012-12-20 18:52 2008-12-8 Show GitHub Exploit DB Packet Storm
229293 6.9 警告 PvPGN - pvpgn の pvpgn-support-installer における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5370 2012-12-20 18:52 2008-08-11 Show GitHub Exploit DB Packet Storm
229294 6.8 警告 PHP-Fusion - PHP-Fusion の messages.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5335 2012-12-20 18:52 2008-12-4 Show GitHub Exploit DB Packet Storm
229295 10 危険 pie - Pie における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-5332 2012-12-20 18:52 2008-12-4 Show GitHub Exploit DB Packet Storm
229296 7.5 危険 xoops hocasi - XOOPS 用の GesGaleri モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5321 2012-12-20 18:52 2008-12-3 Show GitHub Exploit DB Packet Storm
229297 5 警告 Tiki Software Community Association - Tikiwiki における脆弱性 CWE-noinfo
情報不足
CVE-2008-5319 2012-12-20 18:52 2008-10-17 Show GitHub Exploit DB Packet Storm
229298 5 警告 Tiki Software Community Association - Tikiwiki における脆弱性 CWE-noinfo
情報不足
CVE-2008-5318 2012-12-20 18:52 2008-10-17 Show GitHub Exploit DB Packet Storm
229299 7.5 危険 pilotgroup - PG Roommate Finder Solution の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5307 2012-12-20 18:52 2008-12-2 Show GitHub Exploit DB Packet Storm
229300 7.5 危険 pilotgroup - PG Real Estate Solution の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5306 2012-12-20 18:52 2008-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208651 7.2 HIGH
Network
rgcms_project rgcms An arbitrary file write vulnerability in RGCMS v1.06 allows attackers to execute arbitrary code via a crafted PHP file. NVD-CWE-noinfo
CVE-2020-21480 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208652 9.8 CRITICAL
Network
feehi feehicms An arbitrary file upload vulnerability in Feehi CMS v2.0.8 and below allows attackers to execute arbitrary code via a crafted PHP file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21322 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208653 4.3 MEDIUM
Network
emlog emlog emlog v6.0 contains a Cross-Site Request Forgery (CSRF) via /admin/link.php?action=addlink, which allows attackers to arbitrarily add articles. CWE-352
 Origin Validation Error
CVE-2020-21321 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208654 9.8 CRITICAL
Network
metinfo metinfo MetInfo 7.0.0 contains a SQL injection vulnerability via admin/?n=logs&c=index&a=dodel. CWE-89
SQL Injection
CVE-2020-21127 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208655 8.8 HIGH
Network
metinfo metinfo MetInfo 7.0.0 contains a Cross-Site Request Forgery (CSRF) via admin/?n=admin&c=index&a=doSaveInfo. CWE-352
 Origin Validation Error
CVE-2020-21126 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208656 9.8 CRITICAL
Network
ureport_project ureport An arbitrary file creation vulnerability in UReport 2.2.9 allows attackers to execute arbitrary code. NVD-CWE-noinfo
CVE-2020-21125 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208657 9.8 CRITICAL
Network
ureport_project ureport UReport 2.2.9 allows attackers to execute arbitrary code due to a lack of access control to the designer page. CWE-863
 Incorrect Authorization
CVE-2020-21124 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208658 5.3 MEDIUM
Network
ureport_project ureport UReport v2.2.9 contains a Server-Side Request Forgery (SSRF) in the designer page which allows attackers to detect intranet device ports. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-21122 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208659 9.8 CRITICAL
Network
kliqqi kliqqi_cms Pligg CMS 2.0.2 contains a time-based SQL injection vulnerability via the $recordIDValue parameter in the admin_update_module_widgets.php file. CWE-89
SQL Injection
CVE-2020-21121 2024-11-21 14:12 2021-09-16 Show GitHub Exploit DB Packet Storm
208660 6.1 MEDIUM
Network
maccms maccms A cross-site scripting (XSS) vulnerability in the background administrator article management module of Maccms 8.0 allows attackers to steal administrator and user cookies via crafted payloads in the… CWE-79
Cross-site Scripting
CVE-2020-21082 2024-11-21 14:12 2021-09-15 Show GitHub Exploit DB Packet Storm