Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229981 9.3 危険 pierreegougelet - Windows 上で稼動する GFL SDK の Pierre-emmanuel Gougelet XnView などにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0064 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
229982 10 危険 トレンドマイクロ - Trend Micro ServerProtect の不特定のプロシージャにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0014 2012-12-20 18:34 2008-11-17 Show GitHub Exploit DB Packet Storm
229983 10 危険 トレンドマイクロ - Trend Micro ServerProtect の不特定のプロシージャにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0013 2012-12-20 18:34 2008-11-17 Show GitHub Exploit DB Packet Storm
229984 10 危険 トレンドマイクロ - Trend Micro ServerProtect の不特定のプロシージャにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0012 2012-12-20 18:34 2008-11-17 Show GitHub Exploit DB Packet Storm
229985 7.2 危険 PulseAudio - PulseAudio の pa_drop_root 関数における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0008 2012-12-20 18:34 2008-01-28 Show GitHub Exploit DB Packet Storm
229986 4.3 警告 xmb forum - XMB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6728 2012-12-20 18:34 2009-07-5 Show GitHub Exploit DB Packet Storm
229987 10 危険 synce - SynCE (SynCE-dccm) の vdccm におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6703 2012-12-20 18:34 2008-03-4 Show GitHub Exploit DB Packet Storm
229988 7.5 危険 Simple DirectMedia Layer - SDL_image の IMG_gif.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6697 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
229989 2.1 注意 webcalendar - WebCalendar におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6696 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
229990 5 警告 VideoLAN - VideoLAN VLC の RTSP モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-6684 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209781 8.1 HIGH
Network
siemens nucleus_net
nucleus_source_code
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5… CWE-787
 Out-of-bounds Write
CVE-2020-15795 2024-11-21 14:06 2021-04-23 Show GitHub Exploit DB Packet Storm
209782 5.5 MEDIUM
Local
bitdefender safepay An Origin Validation Error vulnerability in Bitdefender Safepay allows an attacker to manipulate the browser's file upload capability into accessing other files in the same directory or sub-directori… CWE-346
 Origin Validation Error
CVE-2020-15734 2024-11-21 14:06 2021-04-13 Show GitHub Exploit DB Packet Storm
209783 6.5 MEDIUM
Network
fortinet fortiweb An information disclosure vulnerability in Web Vulnerability Scan profile of Fortinet's FortiWeb version 6.2.x below 6.2.4 and version 6.3.x below 6.3.5 may allow a remote authenticated attacker to r… CWE-522
 Insufficiently Protected Credentials
CVE-2020-15942 2024-11-21 14:06 2021-04-13 Show GitHub Exploit DB Packet Storm
209784 6.5 MEDIUM
Network
spinetix dsos
hmp350_firmware
hmp300_firmware
diva_firmware
hmp400_firmware
hmp400w_firmware
spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HM… CWE-22
CWE-918
Path Traversal
Server-Side Request Forgery (SSRF) 
CVE-2020-15809 2024-11-21 14:06 2021-03-25 Show GitHub Exploit DB Packet Storm
209785 7.5 HIGH
Network
fortinet fortios When traffic other than HTTP/S (eg: SSH traffic, etc...) traverses the FortiGate in version below 6.2.5 and below 6.4.2 on port 80/443, it is not redirected to the transparent proxy policy for proces… NVD-CWE-noinfo
CVE-2020-15938 2024-11-21 14:06 2021-03-5 Show GitHub Exploit DB Packet Storm
209786 6.1 MEDIUM
Network
fortinet fortios An improper neutralization of input vulnerability in FortiGate version 6.2.x below 6.2.5 and 6.4.x below 6.4.1 may allow a remote attacker to perform a stored cross site scripting attack (XSS) via th… CWE-79
Cross-site Scripting
CVE-2020-15937 2024-11-21 14:06 2021-03-4 Show GitHub Exploit DB Packet Storm
209787 4.4 MEDIUM
Local
linux
canonical
linux_kernel
ubuntu_linux
Overlayfs did not properly perform permission checking when copying up files in an overlayfs and could be exploited from within a user namespace, if, for example, unprivileged user namespaces were al… NVD-CWE-Other
CVE-2020-16120 2024-11-21 14:06 2021-02-11 Show GitHub Exploit DB Packet Storm
209788 5.7 MEDIUM
Network
owncloud files_antivirus When using an object storage like S3 as the file store, when a user creates a public link to a folder where anonymous users can upload files, and another user uploads a virus the files antivirus app … CWE-276
Incorrect Default Permissions 
CVE-2020-16144 2024-11-21 14:06 2021-02-10 Show GitHub Exploit DB Packet Storm
209789 9.8 CRITICAL
Network
siemens simatic_hmi_comfort_panels_firmware
simatic_hmi_ktp_mobile_panels_firmware
sinamics_gh150_firmware
sinamics_gl150_firmware
sinamics_gm150_firmware
sinamics_sh150_firmware
sinamics_s…
A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V16 Update 3a), SIMATIC HMI KTP Mobile Panels (All versions < V16 Update 3a), SINAMICS GH150 … - CVE-2020-15798 2024-11-21 14:06 2021-02-10 Show GitHub Exploit DB Packet Storm
209790 8.8 HIGH
Network
google chrome Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted SCTP packet. CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2020-16044 2024-11-21 14:06 2021-02-9 Show GitHub Exploit DB Packet Storm