Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229881 7.5 危険 phpBB - phpBB Garage の garage.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6223 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229882 7.8 危険 tumusika evolution - TuMusika Evolution における設定ファイルを取得される脆弱性 CWE-200
情報漏えい
CVE-2007-6221 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229883 5 警告 typespeed - typespeed におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2007-6220 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229884 5 警告 web-meetme - Web-MeetMe の play.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6215 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229885 5 警告 webed - WebED の mod/chat/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6213 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229886 7.2 危険 sing - Debian GNU/Linux 上で稼動している sing における任意のファイルを追加される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6211 2012-12-20 18:34 2007-12-3 Show GitHub Exploit DB Packet Storm
229887 2.1 注意 Zabbix - ZABBIX の zabbix_agentd における権限を取得される脆弱性 CWE-16
環境設定
CVE-2007-6210 2012-12-20 18:34 2007-11-25 Show GitHub Exploit DB Packet Storm
229888 4.6 警告 zsh - zsh の Util/difflog.pl における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6209 2012-12-20 18:34 2007-12-3 Show GitHub Exploit DB Packet Storm
229889 4.3 警告 s9y - S9Y Serendipity のリモート RSS sidebar プラグイン におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6205 2012-12-20 18:34 2007-12-8 Show GitHub Exploit DB Packet Storm
229890 7.5 危険 wesnoth - Wesnoth におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6201 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209881 5.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! through 3.9.19. Missing validation checks on the usergroups table object can result in a broken site configuration. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-15699 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209882 5.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! through 3.9.19. Inadequate filtering on the system information screen could expose Redis or proxy credentials NVD-CWE-noinfo
CVE-2020-15698 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209883 4.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! through 3.9.19. Internal read-only fields in the User table class could be modified by users. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15697 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209884 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! through 3.9.19. Lack of input filtering and escaping allows XSS attacks in mod_random_image. CWE-79
Cross-site Scripting
CVE-2020-15696 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209885 6.3 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! through 3.9.19. A missing token check in the remove request section of com_privacy causes a CSRF vulnerability. CWE-352
 Origin Validation Error
CVE-2020-15695 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209886 6.1 MEDIUM
Network
rosariosis rosariosis RosarioSIS through 6.8-beta allows modules/Custom/NotifyParents.php XSS because of the href attributes for AddStudents.php and User.php. CWE-79
Cross-site Scripting
CVE-2020-15721 2024-11-21 14:06 2020-07-15 Show GitHub Exploit DB Packet Storm
209887 6.8 MEDIUM
Network
dogtagpki dogtagpki In Dogtag PKI through 10.8.3, the pki.client.PKIConnection class did not enable python-requests certificate validation. Since the verify parameter was hard-coded in all request functions, it was not … CWE-295
Improper Certificate Validation 
CVE-2020-15720 2024-11-21 14:06 2020-07-14 Show GitHub Exploit DB Packet Storm
209888 4.2 MEDIUM
Network
openldap
redhat
opensuse
mcafee
oracle
openldap
enterprise_linux
leap
policy_auditor
blockchain_platform
libldap in certain third-party OpenLDAP packages has a certificate-validation flaw when the third-party package is asserting RFC6125 support. It considers CN even when there is a non-matching subject… CWE-295
Improper Certificate Validation 
CVE-2020-15719 2024-11-21 14:06 2020-07-14 Show GitHub Exploit DB Packet Storm
209889 8.8 HIGH
Network
misp misp In MISP before 2.4.129, setting a favourite homepage was not CSRF protected. CWE-352
 Origin Validation Error
CVE-2020-15711 2024-11-21 14:06 2020-07-14 Show GitHub Exploit DB Packet Storm
209890 7.5 HIGH
Network
embedthis appweb Appweb before 7.2.2 and 8.x before 8.1.0, when built with CGI support, mishandles an HTTP request with a Range header that lacks an exact range. This may result in a NULL pointer dereference and caus… CWE-476
 NULL Pointer Dereference
CVE-2020-15689 2024-11-21 14:06 2020-07-13 Show GitHub Exploit DB Packet Storm