Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230731 4.3 警告 webSPELL - webSPELL の admin/admincenter.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-0575 2012-12-20 18:34 2008-02-4 Show GitHub Exploit DB Packet Storm
230732 4.3 警告 webSPELL - webSPELL の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0574 2012-12-20 18:34 2008-02-4 Show GitHub Exploit DB Packet Storm
230733 7.2 危険 SafeNet, Inc - SafeNET HighAssurance Remote および SoftRemote の IPSecDrv.sys における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0573 2012-12-20 18:34 2008-02-4 Show GitHub Exploit DB Packet Storm
230734 4.3 警告 uniwin - Uniwin eCart Professional におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0558 2012-12-20 18:34 2008-02-4 Show GitHub Exploit DB Packet Storm
230735 10 危険 radio toolbox - Steamcast におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-0550 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230736 5 警告 radio toolbox - Steamcast の OggHeaderParse 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-0549 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230737 5 警告 radio toolbox - Steamcast におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-0548 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230738 4.3 警告 shoppingtree - CP の admin/utilities_ConfigHelp.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0547 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230739 7.5 危険 shoppingtree - CP における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0546 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230740 10 危険 Simple DirectMedia Layer - SDL_image の IMG_lbm.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0544 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200741 7.4 HIGH
Network
nodejs
opensuse
fedoraproject
node.js
leap
fedora
Node.js < 12.18.4 and < 14.11 can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users. The payloads can be crafted by an attacker to hijack user sessions,… CWE-444
HTTP Request Smuggling
CVE-2020-8201 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
200742 6.5 MEDIUM
Network
citrix storefront_server Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary… CWE-287
Improper Authentication
CVE-2020-8200 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
200743 6.1 MEDIUM
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
Improper Input Validation on Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and Net… CWE-79
Cross-site Scripting
CVE-2020-8245 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
200744 9.8 CRITICAL
Network
typeorm typeorm Prototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties leading to further denial of service or SQL injection attacks. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-8158 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
200745 5.5 MEDIUM
Local
puppet continuous_delivery Local registry credentials were included directly in the CD4PE deployment definition, which could expose these credentials to users who should not have access to them. This is resolved in Continuous … CWE-522
 Insufficiently Protected Credentials
CVE-2020-7945 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
200746 9.3 CRITICAL
Local
suse salt-netapi-client A Improper Access Control vulnerability in the configuration of salt of SUSE Linux Enterprise Module for SUSE Manager Server 4.1, SUSE Manager Proxy 4.0, SUSE Manager Retail Branch Server 4.0, SUSE M… - CVE-2020-8028 2024-11-21 14:38 2020-09-17 Show GitHub Exploit DB Packet Storm
200747 5.5 MEDIUM
Local
lenovo system_interface_foundation A denial of service vulnerability was reported in the Lenovo Vantage component called Lenovo System Interface Foundation prior to version 1.1.19.5 that could allow configuration files to be written t… CWE-276
Incorrect Default Permissions 
CVE-2020-8346 2024-11-21 14:38 2020-09-16 Show GitHub Exploit DB Packet Storm
200748 7.0 HIGH
Local
lenovo system_update A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege. CWE-362
Race Condition
CVE-2020-8342 2024-11-21 14:38 2020-09-16 Show GitHub Exploit DB Packet Storm
200749 6.1 MEDIUM
Network
lenovo integrated_management_module_2 A cross-site scripting (XSS) vulnerability was discovered in the legacy IBM and Lenovo System x IMM2 (Integrated Management Module 2), prior to version 5.60, embedded Baseboard Management Controller … CWE-79
Cross-site Scripting
CVE-2020-8340 2024-11-21 14:38 2020-09-16 Show GitHub Exploit DB Packet Storm
200750 6.1 MEDIUM
Network
ibm bladecenter_advanced_management_module_firmware A cross-site scripting inclusion (XSSI) vulnerability was reported in the legacy IBM BladeCenter Advanced Management Module (AMM) web interface prior to version 3.68n [BPET68N]. This vulnerability co… CWE-79
Cross-site Scripting
CVE-2020-8339 2024-11-21 14:38 2020-09-16 Show GitHub Exploit DB Packet Storm