Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229581 7.5 危険 xyssl - XySSL の ssl_parse_client_key_exchange 関数における鍵を回復される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7128 2012-12-20 19:10 2009-08-31 Show GitHub Exploit DB Packet Storm
229582 7.5 危険 zkup - zKup CMS における管理者権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-7124 2012-12-20 19:10 2009-08-31 Show GitHub Exploit DB Packet Storm
229583 6.8 警告 zkup - zKup CMS の admin/configuration/modifier.php における任意の PHP コード挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-7123 2012-12-20 19:10 2009-08-31 Show GitHub Exploit DB Packet Storm
229584 7.5 危険 WeBid Support - WeBid auction script の item.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7119 2012-12-20 19:10 2009-08-28 Show GitHub Exploit DB Packet Storm
229585 5 警告 WeBid Support - WeBid auction script における SQL クエリログを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7118 2012-12-20 19:10 2009-08-28 Show GitHub Exploit DB Packet Storm
229586 5 警告 WeBid Support - WeBid auction script の eledicss.php における任意のカスケードスタイルシートファイル (CSS) を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7117 2012-12-20 19:10 2009-08-28 Show GitHub Exploit DB Packet Storm
229587 7.5 危険 WeBid Support - WeBid auction script の admin panel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7116 2012-12-20 19:10 2009-08-28 Show GitHub Exploit DB Packet Storm
229588 4.3 警告 phpcart - Carmosa phpCart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-7108 2012-12-20 19:10 2009-08-28 Show GitHub Exploit DB Packet Storm
229589 5 警告 ソフォス - Microsoft Exchange 用の Sophos PureMessage におけるスキャン保護のリモート回避をされる脆弱性 CWE-Other
その他
CVE-2008-7106 2012-12-20 19:10 2009-08-27 Show GitHub Exploit DB Packet Storm
229590 5 警告 ソフォス - Microsoft Exchange 用の Sophos PureMessage におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2008-7105 2012-12-20 19:10 2009-08-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202341 8.8 HIGH
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
sd-wan_wanop
Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix A… CWE-269
 Improper Privilege Management
CVE-2020-8247 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202342 7.5 HIGH
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
sd-wan_wanop
Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix A… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8246 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202343 7.5 HIGH
Network
json-bigint_project json-bigint Prototype pollution in json-bigint npm package < 1.0.0 may lead to a denial-of-service (DoS) attack. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8237 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202344 7.5 HIGH
Network
nextcloud desktop A cleartext storage of sensitive information in Nextcloud Desktop Client 2.6.4 gave away information about used proxies and their authentication credentials. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-8225 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202345 7.4 HIGH
Network
nodejs
opensuse
fedoraproject
node.js
leap
fedora
Node.js < 12.18.4 and < 14.11 can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users. The payloads can be crafted by an attacker to hijack user sessions,… CWE-444
HTTP Request Smuggling
CVE-2020-8201 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202346 6.5 MEDIUM
Network
citrix storefront_server Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary… CWE-287
Improper Authentication
CVE-2020-8200 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202347 6.1 MEDIUM
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
Improper Input Validation on Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and Net… CWE-79
Cross-site Scripting
CVE-2020-8245 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202348 9.8 CRITICAL
Network
typeorm typeorm Prototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties leading to further denial of service or SQL injection attacks. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-8158 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202349 5.5 MEDIUM
Local
puppet continuous_delivery Local registry credentials were included directly in the CD4PE deployment definition, which could expose these credentials to users who should not have access to them. This is resolved in Continuous … CWE-522
 Insufficiently Protected Credentials
CVE-2020-7945 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
202350 9.3 CRITICAL
Local
suse salt-netapi-client A Improper Access Control vulnerability in the configuration of salt of SUSE Linux Enterprise Module for SUSE Manager Server 4.1, SUSE Manager Proxy 4.0, SUSE Manager Retail Branch Server 4.0, SUSE M… - CVE-2020-8028 2024-11-21 14:38 2020-09-17 Show GitHub Exploit DB Packet Storm