Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230301 7.5 危険 PHPNUKE - PHP-Nuke 用の Kose_Yazilari モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1053 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230302 6.8 警告 phpprofiles - phpProfiles の include/body_comm.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1051 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230303 7.5 危険 softbiz - Softbiz Jokes & Funny Pics Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1050 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230304 10 危険 positive software - Parallels H-Sphere で使用される Parallels SiteStudio における脆弱性 CWE-noinfo
情報不足
CVE-2008-1049 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
230305 4.3 警告 Plume CMS - Plume CMS の manager/xmedia.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1048 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230306 4.3 警告 Tiki Software Community Association - TikiWiki の tiki-edit_article.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1047 2012-12-20 18:34 2008-02-23 Show GitHub Exploit DB Packet Storm
230307 6.8 警告 quinsonnas - Quinsonnas Mail Checker の footer.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1046 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230308 7.5 危険 porar - PORAR WEBBOARD の question.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1039 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230309 5.8 警告 spyce - Spyce - PSP における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0982 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
230310 6.4 警告 spyce - Spyce - PSP の spyce/examples/redirect.spy におけるオープンリダイレクトの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0981 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214201 9.8 CRITICAL
Network
trendnet tv-ip512wn_firmware TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This may result in remote code execution or denial of … CWE-787
 Out-of-bounds Write
CVE-2020-12763 2024-11-21 14:00 2020-05-14 Show GitHub Exploit DB Packet Storm
214202 6.1 MEDIUM
Network
iubenda iubenda-cookie-law-solution The iubenda-cookie-law-solution plugin before 2.3.5 for WordPress does not restrict URL sanitization to http protocols. CWE-20
 Improper Input Validation 
CVE-2020-12742 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214203 4.3 MEDIUM
Network
dkd direct_mail The direct_mail extension through 5.2.3 for TYPO3 allows Information Disclosure via a newsletter subscriber data Special Query. CWE-862
 Missing Authorization
CVE-2020-12700 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214204 6.1 MEDIUM
Network
dkd direct_mail The direct_mail extension through 5.2.3 for TYPO3 has an Open Redirect via jumpUrl. CWE-601
Open Redirect
CVE-2020-12699 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214205 4.3 MEDIUM
Network
dkd direct_mail The direct_mail extension through 5.2.3 for TYPO3 has Broken Access Control for newsletter subscriber tables. CWE-862
 Missing Authorization
CVE-2020-12698 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214206 5.3 MEDIUM
Network
dkd direct_mail The direct_mail extension through 5.2.3 for TYPO3 allows Denial of Service via log entries. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-12697 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214207 8.8 HIGH
Network
igniterealtime spark An issue was discovered in Ignite Realtime Spark 2.8.3 (and the ROAR plugin for it) on Windows. A chat message can include an IMG element with a SRC attribute referencing an external host's IP addres… CWE-200
Information Exposure
CVE-2020-12772 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214208 5.3 MEDIUM
Local
linux
redhat
canonical
linux_kernel
enterprise_linux
ubuntu_linux
enterprise_mrg
A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only 32 bits, an integer overflow can interfere with a… CWE-190
 Integer Overflow or Wraparound
CVE-2020-12826 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214209 7.1 HIGH
Network
gnome libcroco libcroco through 0.6.13 has excessive recursion in cr_parser_parse_any_core in cr-parser.c, leading to stack consumption. CWE-674
 Uncontrolled Recursion
CVE-2020-12825 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm
214210 9.8 CRITICAL
Network
infradead
fedoraproject
debian
opensuse
openconnect
fedora
debian_linux
leap
OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c. CWE-120
Classic Buffer Overflow
CVE-2020-12823 2024-11-21 14:00 2020-05-13 Show GitHub Exploit DB Packet Storm