Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229721 6.8 警告 zirkon box - Fritz Berger yappa-ng の yappa-ng におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4626 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229722 7.5 危険 shiftthis - WordPress 用の ShiftThis Newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4625 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229723 5 警告 Wireshark - Wireshark の Bluetooth ACL 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4683 2012-12-20 18:52 2007-04-4 Show GitHub Exploit DB Packet Storm
229724 7.5 危険 phpfastnews - phpFastNews の fastnews-code.php における認証を迂回される脆弱性 CWE-287
不適切な認証
CVE-2008-4622 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229725 7.5 危険 ZeeScripts.com - ZeeScripts Zeeproperty の bannerclick.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4621 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229726 10 危険 サン・マイクロシステムズ - Sun Solaris の RPC サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-4619 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229727 7.5 危険 pyxicom - Joomla! 用の actualite モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4617 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229728 5 警告 the spanner
WordPress.org
- WordPress の SpamBam プラグインにおける制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4616 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229729 10 危険 portalapp - PortalApp の i_utils.asp における脆弱性 CWE-noinfo
情報不足
CVE-2008-4615 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
229730 7.5 危険 portalapp - PortalApp におけるトピックなどを作成および削除される脆弱性 CWE-287
不適切な認証
CVE-2008-4614 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208901 6.1 MEDIUM
Network
phpjabbers fundraising_script Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionLoadCss function. CWE-79
Cross-site Scripting
CVE-2020-22222 2024-11-21 14:13 2021-11-6 Show GitHub Exploit DB Packet Storm
208902 5.5 MEDIUM
Local
irfanview irfanview Irfanview v4.53 allows attackers to to cause a denial of service (DoS) via a crafted JPEG 2000 file. Related to "Integer Divide By Zero starting at JPEG2000!ShowPlugInSaveOptions_W+0x00000000000082ea" CWE-369
 Divide By Zero
CVE-2020-23567 2024-11-21 14:13 2021-11-6 Show GitHub Exploit DB Packet Storm
208903 5.5 MEDIUM
Local
irfanview irfanview Irfanview v4.53 was discovered to contain an infinity loop via JPEG2000!ShowPlugInSaveOptions_W+0x1ecd8. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-23566 2024-11-21 14:13 2021-11-6 Show GitHub Exploit DB Packet Storm
208904 7.8 HIGH
Local
irfanview irfanview Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file. Related to a "Data from Faulting Address controls Branch Selection starting at JPEG2000!ShowPlugInSaveOptions_… NVD-CWE-noinfo
CVE-2020-23565 2024-11-21 14:13 2021-11-6 Show GitHub Exploit DB Packet Storm
208905 7.8 HIGH
Local
text2pdf_project text2pdf An issue was discovered in function StartPage in text2pdf.c in pdfcorner text2pdf 1.1, allows attackers to cause denial of service or possibly other undisclosed impacts. NVD-CWE-noinfo
CVE-2020-23680 2024-11-21 14:13 2021-11-4 Show GitHub Exploit DB Packet Storm
208906 9.8 CRITICAL
Network
linux_network_project linux_network_project Buffer overflow vulnerability in Renleilei1992 Linux_Network_Project 1.0, allows attackers to execute arbitrary code, via the password field. CWE-120
Classic Buffer Overflow
CVE-2020-23679 2024-11-21 14:13 2021-11-4 Show GitHub Exploit DB Packet Storm
208907 6.1 MEDIUM
Network
chamilo chamilo_lms Chamilo LMS version 1.11.10 contains an XSS vulnerability in the personal profile edition form, affecting the user him/herself and social network friends. CWE-79
Cross-site Scripting
CVE-2020-23126 2024-11-21 14:13 2021-11-4 Show GitHub Exploit DB Packet Storm
208908 8.1 HIGH
Network
struktur libheif Buffer overflow vulnerability in function convert_colorspace in heif_colorconversion.cc in libheif v1.6.2, allows attackers to cause a denial of service and disclose sensitive information, via a craf… CWE-120
Classic Buffer Overflow
CVE-2020-23109 2024-11-21 14:13 2021-11-4 Show GitHub Exploit DB Packet Storm
208909 9.8 CRITICAL
Network
tendacn ac10u_firmware
ac9_firmware
Stack-based buffer overflow in Tenda AC-10U AC1200 Router US_AC10UV1.0RTL_V15.03.06.48_multi_TDE01 allows remote attackers to execute arbitrary code via the timeZone parameter to goform/SetSysTimeCfg. CWE-787
 Out-of-bounds Write
CVE-2020-22079 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm
208910 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting… NVD-CWE-noinfo
CVE-2020-23549 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm