Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230071 5 警告 stphp - STphp EasyNews におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-3331 2012-12-20 18:19 2007-06-21 Show GitHub Exploit DB Packet Storm
230072 4.3 警告 stphp - STphp EasyNews におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3330 2012-12-20 18:19 2007-06-21 Show GitHub Exploit DB Packet Storm
230073 6.8 警告 xvid - Xvid の src/bitstream/mbcoding.c における任意のコードを実行される脆弱性 CWE-DesignError
CVE-2007-3329 2012-12-20 18:19 2007-04-28 Show GitHub Exploit DB Packet Storm
230074 9.3 危険 VideoLAN - VideoLAN VLC Media Player のプラグインにおけるフォーマットストリングの脆弱性 - CVE-2007-3316 2012-12-20 18:19 2007-06-12 Show GitHub Exploit DB Packet Storm
230075 6.8 警告 yourfreescreamer - YourFreeScreamer における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3315 2012-12-20 18:19 2007-06-21 Show GitHub Exploit DB Packet Storm
230076 7.5 危険 XOOPS - Xoops 用の Articles モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-3311 2012-12-20 18:19 2007-06-21 Show GitHub Exploit DB Packet Storm
230077 4.3 警告 tdizin - TDizin の arama.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3310 2012-12-20 18:19 2007-06-20 Show GitHub Exploit DB Packet Storm
230078 7.5 危険 Simple Machines - SMF におけるメッセージの作成時に任意の PHP コードを実行され脆弱性 - CVE-2007-3309 2012-12-20 18:19 2007-06-20 Show GitHub Exploit DB Packet Storm
230079 7.5 危険 Simple Machines - SMF における CAPTCHA テストを通過される脆弱性 - CVE-2007-3308 2012-12-20 18:19 2007-06-20 Show GitHub Exploit DB Packet Storm
230080 7.5 危険 solar empire - Solar Empire の game_listing.php における SQL インジェクションの脆弱性 - CVE-2007-3307 2012-12-20 18:19 2007-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200291 4.3 MEDIUM
Network
ibm security_secret_server IBM Security Secret Server 10.7 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this v… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-4322 2024-11-21 14:32 2020-06-24 Show GitHub Exploit DB Packet Storm
200292 2.4 LOW
Physics
django-basic-auth-ip-whitelist_project django-basic-auth-ip-whitelist In django-basic-auth-ip-whitelist before 0.3.4, a potential timing attack exists on websites where the basic authentication is used or configured, i.e. BASIC_AUTH_LOGIN and BASIC_AUTH_PASSWORD is set… - CVE-2020-4071 2024-11-21 14:32 2020-06-24 Show GitHub Exploit DB Packet Storm
200293 5.3 MEDIUM
Network
ibm security_guardium IBM Security Guardium 10.6 and 11.1 may use insufficiently random numbers or values in a security context that depends on unpredictable numbers. IBM X-Force ID: 174807. CWE-330
 Use of Insufficiently Random Values
CVE-2020-4188 2024-11-21 14:32 2020-06-24 Show GitHub Exploit DB Packet Storm
200294 5.3 MEDIUM
Network
atlassian jira
jira_software_data_center
Versions before 8.9.1, Various resources in Jira responded with a 404 instead of redirecting unauthenticated users to the login page, in some situations this may have allowed unauthorised attackers t… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-4028 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200295 6.5 MEDIUM
Network
freerdp
fedoraproject
opensuse
canonical
debian
freerdp
fedora
leap
ubuntu_linux
debian_linux
In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based clients with sessions with color depth < 32 are affected. This is fixed in version 2.1.2. - CVE-2020-4033 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200296 4.3 MEDIUM
Network
freerdp
opensuse
fedoraproject
canonical
debian
freerdp
leap
fedora
ubuntu_linux
debian_linux
In FreeRDP before version 2.1.2, there is an integer casting vulnerability in update_recv_secondary_order. All clients with +glyph-cache /relax-order-checks are affected. This is fixed in version 2.1… - CVE-2020-4032 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200297 7.5 HIGH
Network
freerdp
fedoraproject
opensuse
canonical
debian
freerdp
fedora
leap
ubuntu_linux
debian_linux
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject. All FreeRDP clients using compatibility mode with /relax-order-checks are affected. This is fixed in version 2.1.2. - CVE-2020-4031 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200298 6.5 MEDIUM
Network
freerdp
fedoraproject
opensuse
canonical
debian
freerdp
fedora
leap
ubuntu_linux
debian_linux
In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse. Logging might bypass string length checks due to an integer overflow. This is fixed in version 2.1.2. - CVE-2020-4030 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200299 5.4 MEDIUM
Network
w3c css_validator In CSS Validator less than or equal to commit 54d68a1, there is a cross-site scripting vulnerability in handling URIs. A user would have to click on a specifically crafted validator link to trigger i… - CVE-2020-4070 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm
200300 9.8 CRITICAL
Network
apnswift_project apnswift In APNSwift 1.0.0, calling APNSwiftSigner.sign(digest:) is likely to result in a heap buffer overflow. This has been fixed in 1.0.1. - CVE-2020-4068 2024-11-21 14:32 2020-06-23 Show GitHub Exploit DB Packet Storm