Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229311 7.5 危険 web-album - WEBalbum の photo.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0446 2012-12-20 19:10 2009-02-10 Show GitHub Exploit DB Packet Storm
229312 7.5 危険 SIRINI.NET - GRBoard における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-0444 2012-12-20 19:10 2009-02-10 Show GitHub Exploit DB Packet Storm
229313 6.8 警告 phpbbbook - PHPbbBook の bbcode.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-0442 2012-12-20 19:10 2009-02-10 Show GitHub Exploit DB Packet Storm
229314 6.8 警告 technote - Technote の skin_shop/standard/2_view_body/body_default.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-0441 2012-12-20 19:10 2009-02-10 Show GitHub Exploit DB Packet Storm
229315 7.5 危険 Tincan - phpList の lists/admin.php におけるローカルファイルをインクルードされる脆弱性 CWE-94
コード・インジェクション
CVE-2009-0422 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
229316 7.5 危険 rd-media - Joomla! 用の RD-Autos コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0420 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
229317 6.9 警告 Standards Based Linux Instrumentation (SBLIM) - SBLIM sblim-sfcb の SSL certificate setup program における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2009-0416 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
229318 10 危険 The Tor Project - Tor における脆弱性 CWE-399
リソース管理の問題
CVE-2009-0414 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
229319 4.3 警告 Roundcube.net - roundcubemail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0413 2012-12-20 19:10 2009-01-20 Show GitHub Exploit DB Packet Storm
229320 7.5 危険 smartsitecms - smartSite CMS の articles.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0405 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215371 9.8 CRITICAL
Network
aveva edna_enterprise_data_historian Parameter psClass in ednareporting.asmx is vulnerable to unauthenticated SQL injection attacks. Specially crafted SOAP web requests can cause SQL injections resulting in data compromise. An attacker … CWE-89
SQL Injection
CVE-2020-13505 2024-11-21 14:01 2020-09-25 Show GitHub Exploit DB Packet Storm
215372 9.8 CRITICAL
Network
aveva edna_enterprise_data_historian Parameter AttFilterValue in ednareporting.asmx is vulnerable to unauthenticated SQL injection attacks. Specially crafted SOAP web requests can cause SQL injections resulting in data compromise. An at… CWE-89
SQL Injection
CVE-2020-13504 2024-11-21 14:01 2020-09-25 Show GitHub Exploit DB Packet Storm
215373 9.8 CRITICAL
Network
aveva edna_enterprise_data_historian An SQL injection vulnerability exists in the CHaD.asmx web service functionality of eDNA Enterprise Data Historian 3.0.1.2/7.5.4989.33053. Specially crafted SOAP web requests can cause SQL injections… CWE-89
SQL Injection
CVE-2020-13501 2024-11-21 14:01 2020-09-25 Show GitHub Exploit DB Packet Storm
215374 9.8 CRITICAL
Network
aveva edna_enterprise_data_historian SQL injection vulnerability exists in the CHaD.asmx web service functionality of eDNA Enterprise Data Historian 3.0.1.2/7.5.4989.33053. Specially crafted SOAP web requests can cause SQL injections re… CWE-89
SQL Injection
CVE-2020-13500 2024-11-21 14:01 2020-09-25 Show GitHub Exploit DB Packet Storm
215375 9.8 CRITICAL
Network
aveva edna_enterprise_data_historian An SQL injection vulnerability exists in the CHaD.asmx web service functionality of eDNA Enterprise Data Historian 3.0.1.2/7.5.4989.33053. Specially crafted SOAP web requests can cause SQL injections… CWE-89
SQL Injection
CVE-2020-13499 2024-11-21 14:01 2020-09-25 Show GitHub Exploit DB Packet Storm
215376 2.7 LOW
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. A user without 2 factor authentication enabled could be prohibited from accessing GitLab by being invited into a p… CWE-281
 Improper Preservation of Permissions
CVE-2020-13308 2024-11-21 14:01 2020-09-15 Show GitHub Exploit DB Packet Storm
215377 7.5 HIGH
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. The profile activity page was not restricting the amount of results one could request, potentially resulting in a … NVD-CWE-noinfo
CVE-2020-13315 2024-11-21 14:01 2020-09-15 Show GitHub Exploit DB Packet Storm
215378 6.5 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab runner versions before 13.1.3, 13.2.3 and 13.3.1. It was possible to make the gitlab-runner process crash by sending malformed queries, resulting in a denial … NVD-CWE-noinfo
CVE-2020-13310 2024-11-21 14:01 2020-09-15 Show GitHub Exploit DB Packet Storm
215379 8.8 HIGH
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was vulnerable to a blind SSRF attack through the repository mirroring feature. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-13309 2024-11-21 14:01 2020-09-15 Show GitHub Exploit DB Packet Storm
215380 4.9 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8, and 13.3.4. An insufficient check in the GraphQL api allowed a maintainer to delete a repository. CWE-20
 Improper Input Validation 
CVE-2020-13317 2024-11-21 14:01 2020-09-15 Show GitHub Exploit DB Packet Storm