Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229821 7.5 危険 socialsitegenerator - Social Site Generator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6419 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
229822 7.5 危険 torrenttrader - TorrentTrader の scrape.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6418 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
229823 10 危険 Youngzsoft - YoungZSoft CCProxy におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6415 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
229824 7.5 危険 vignette - Vignette Content Management における管理者権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-6412 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
229825 4.3 警告 refbase - refbase におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6400 2012-12-20 19:10 2009-03-5 Show GitHub Exploit DB Packet Storm
229826 10 危険 psi-im - PSI Jabber クライアントにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-6393 2012-12-20 19:10 2009-03-3 Show GitHub Exploit DB Packet Storm
229827 4.3 警告 w3matter - W3matter RevSense の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6385 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
229828 7.5 危険 phpbb-seo - Multi SEO phpBB の include/global.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6377 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
229829 8.5 危険 socialgroupie - Social Groupie の Photos/create_album.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6367 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
229830 4.3 警告 phpf1 - Max's Guestbook の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6359 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202261 7.8 HIGH
Local
backblaze backblaze Backblaze for Windows and Backblaze for macOS before 7.0.0.439 suffer from improper privilege management in `bztransmit` helper due to lack of permission handling and validation before creation of cl… CWE-269
 Improper Privilege Management
CVE-2020-8290 2024-11-21 14:38 2020-12-27 Show GitHub Exploit DB Packet Storm
202262 7.8 HIGH
Local
backblaze backblaze Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where … CWE-295
Improper Certificate Validation 
CVE-2020-8289 2024-11-21 14:38 2020-12-27 Show GitHub Exploit DB Packet Storm
202263 9.8 CRITICAL
Network
trendmicro interscan_web_security_virtual_appliance A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated attacker to execut… CWE-78
OS Command 
CVE-2020-8466 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202264 9.8 CRITICAL
Network
trendmicro interscan_web_security_virtual_appliance A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to manipulate system updates using a combination of CSRF bypass (CVE-2020-8461) and authenticat… CWE-287
CWE-352
Improper Authentication
 Origin Validation Error
CVE-2020-8465 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202265 7.5 HIGH
Network
trendmicro interscan_web_security_virtual_appliance A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to come from the localhost which could expose the product's admin … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-8464 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202266 7.5 HIGH
Network
trendmicro interscan_web_security_virtual_appliance A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization check for anonymous users by manipulating request paths. CWE-22
Path Traversal
CVE-2020-8463 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202267 4.8 MEDIUM
Network
trendmicro interscan_web_security_virtual_appliance A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product. CWE-79
Cross-site Scripting
CVE-2020-8462 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202268 8.8 HIGH
Network
trendmicro interscan_web_security_virtual_appliance A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without… CWE-352
 Origin Validation Error
CVE-2020-8461 2024-11-21 14:38 2020-12-18 Show GitHub Exploit DB Packet Storm
202269 7.5 HIGH
Network
haxx
fedoraproject
debian
netapp
apple
siemens
oracle
splunk
libcurl
fedora
debian_linux
clustered_data_ontap
solidfire
hci_management_node
hci_bootstrap_os
hci_storage_node_firmware
mac_os_x
macos
simatic_tim_1531_irc_firmware
curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response. CWE-295
Improper Certificate Validation 
CVE-2020-8286 2024-11-21 14:38 2020-12-15 Show GitHub Exploit DB Packet Storm
202270 7.5 HIGH
Network
haxx
debian
fedoraproject
netapp
apple
oracle
fujitsu
siemens
splunk
libcurl
debian_linux
fedora
clustered_data_ontap
solidfire
hci_management_node
hci_bootstrap_os
hci_storage_node_firmware
mac_os_x
macos
peoplesoft_enterprise_peopletool…
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing. CWE-787
CWE-674
 Out-of-bounds Write
 Uncontrolled Recursion
CVE-2020-8285 2024-11-21 14:38 2020-12-15 Show GitHub Exploit DB Packet Storm