Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229611 10 危険 website designs for less - Website Designs For Less Click N' Print Coupons の coupon_detail.asp における SQL インジェクションの脆弱性 - CVE-2006-6859 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229612 7.5 危険 webtext - WebText CMS における wt/users/ 配下のスクリプトへ任意の PHP コードを挿入される脆弱性 - CVE-2006-6856 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229613 7.5 危険 shadowed works - Shadowed Portal の include.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6850 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229614 5 警告 リアルネットワークス - RealNetworks RealPlayer の ierpplug.dll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6847 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229615 10 危険 phpBB - phpBB の特定のフォームにおける脆弱性 - CVE-2006-6841 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229616 10 危険 phpBB - phpBB における脆弱性 - CVE-2006-6840 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229617 10 危険 phpBB - phpBB における脆弱性 - CVE-2006-6839 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229618 7.5 危険 rediff - Rediff Bol Downloader OCX コントロールにおける重要な情報 (ユーザ名およびパス名) を取得される脆弱性 - CVE-2006-6838 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229619 6.8 警告 sergey oblomov - Total Commander 用の ISO プラグインの LoadTree などの関数におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-6837 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229620 7.5 危険 yrch - Yrch! の plugins/metasearch/plug.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6823 2012-12-20 18:02 2006-12-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199651 9.8 CRITICAL
Network
cgal
debian
computational_geometry_algorithms_library
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sface() sfh->volume() OOB read. A specially cra… - CVE-2020-35636 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
199652 9.8 CRITICAL
Network
cgal
fedoraproject
debian
computational_geometry_algorithms_library
fedora
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->… - CVE-2020-35628 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
199653 6.5 MEDIUM
Network
courier_management_system_project courier_management_system Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '. CWE-89
SQL Injection
CVE-2020-35329 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
199654 5.4 MEDIUM
Network
courier_management_system_project courier_management_system Courier Management System 1.0 - 'First Name' Stored XSS CWE-79
Cross-site Scripting
CVE-2020-35328 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
199655 6.5 MEDIUM
Network
courier_management_system_project courier_management_system SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php CWE-89
SQL Injection
CVE-2020-35327 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
199656 7.5 HIGH
Network
thinkadmin thinkadmin ThinkAdmin v6 has default administrator credentials, which allows attackers to gain unrestricted administratior dashboard access. CWE-798
 Use of Hard-coded Credentials
CVE-2020-35296 2024-11-21 14:27 2021-03-4 Show GitHub Exploit DB Packet Storm
199657 7.4 HIGH
Network
saltstack
fedoraproject
debian
salt
fedora
debian_linux
In SaltStack Salt before 3002.5, when authenticating to services using certain modules, the SSL certificate is not always validated. CWE-295
Improper Certificate Validation 
CVE-2020-35662 2024-11-21 14:27 2021-02-27 Show GitHub Exploit DB Packet Storm
199658 6.1 MEDIUM
Network
acronis cyber_protect An issue was discovered in Acronis Cyber Protect before 15 Update 1 build 26172. There is cross-site scripting (XSS) in the console. CWE-79
Cross-site Scripting
CVE-2020-35664 2024-11-21 14:27 2021-02-22 Show GitHub Exploit DB Packet Storm
199659 6.1 MEDIUM
Network
mantisbt mantisbt An issue was discovered in MantisBT through 2.24.3. In the helper_ensure_confirmed call in manage_custom_field_update.php, the custom field name is not sanitized. This may be problematic depending on… CWE-79
Cross-site Scripting
CVE-2020-35571 2024-11-21 14:27 2021-02-22 Show GitHub Exploit DB Packet Storm
199660 7.5 HIGH
Network
acronis cyber_protect An issue was discovered in Acronis Cyber Protect before 15 Update 1 build 26172. Because the local notification service misconfigures CORS, information disclosure can occur. NVD-CWE-noinfo
CVE-2020-35556 2024-11-21 14:27 2021-02-22 Show GitHub Exploit DB Packet Storm