Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230741 7.5 危険 PreProject.com - Pre Dynamic Institution における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0543 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230742 4.3 警告 trixbox - trixbox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0540 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230743 6.8 警告 phpip - phpIP Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0538 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230744 4.3 警告 softcart - SoftCart の SoftCart.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0523 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230745 7.5 危険 WordPress.org - WordPress 用の WassUp プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0520 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230746 9.3 危険 SQLiteManager - SQLiteManager の spaw/dialogs/confirm.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-0516 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230747 7.8 危険 Phpcms - phpCMS の parser/include/class.cache_phpcms.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0513 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230748 6.8 警告 WordPress.org - WordPress 用の Dean's Permalinks Migration プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-0508 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230749 7.5 危険 WordPress.org - WordPress 用の AdServe プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0507 2012-12-20 18:34 2008-01-31 Show GitHub Exploit DB Packet Storm
230750 5.8 警告 加藤和良 - phpMyClub におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0501 2012-12-20 18:34 2008-01-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209831 6.1 MEDIUM
Network
microstrategy microstrategy_web_sdk Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the searchString parameter to the wikiScrapp… CWE-79
Cross-site Scripting
CVE-2020-22986 2024-11-21 14:13 2022-05-13 Show GitHub Exploit DB Packet Storm
209832 6.1 MEDIUM
Network
microstrategy microstrategy_web_sdk Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the key parameter to the getESRIExtraConfig … CWE-79
Cross-site Scripting
CVE-2020-22985 2024-11-21 14:13 2022-05-13 Show GitHub Exploit DB Packet Storm
209833 6.1 MEDIUM
Network
microstrategy microstrategy_web_sdk Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via key parameter to the getGoogleExtraConfig ta… CWE-79
Cross-site Scripting
CVE-2020-22984 2024-11-21 14:13 2022-05-13 Show GitHub Exploit DB Packet Storm
209834 9.8 CRITICAL
Network
squire-technologies svi_ms_management_system The Java Remote Management Interface of all versions of SVI MS Management System was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow at… CWE-502
 Deserialization of Untrusted Data
CVE-2020-23621 2024-11-21 14:13 2022-05-3 Show GitHub Exploit DB Packet Storm
209835 9.8 CRITICAL
Network
orlansoft orlansoft_erp The Java Remote Management Interface of all versions of Orlansoft ERP was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow attackers to … CWE-502
 Deserialization of Untrusted Data
CVE-2020-23620 2024-11-21 14:13 2022-05-3 Show GitHub Exploit DB Packet Storm
209836 6.1 MEDIUM
Network
xtendtech voice_logger A reflected cross site scripting (XSS) vulnerability in Xtend Voice Logger 1.0 allows attackers to execute arbitrary web scripts or HTML, via the path of the error page. CWE-79
Cross-site Scripting
CVE-2020-23618 2024-11-21 14:13 2022-05-3 Show GitHub Exploit DB Packet Storm
209837 6.1 MEDIUM
Network
totolink n200re_firmware
n100re_firmware
A cross site scripting (XSS) vulnerability in the error page of Totolink N200RE and N100RE Routers 2.0 allows attackers to execute arbitrary web scripts or HTML via SCRIPT element. CWE-79
Cross-site Scripting
CVE-2020-23617 2024-11-21 14:13 2022-05-3 Show GitHub Exploit DB Packet Storm
209838 9.8 CRITICAL
Network
xiongmaitech ahb7008t-mh-v2_firmware
ahb7804r-els_firmware
ahb7804r-mh-v2_firmware
ahb7808r-ms-v2_firmware
ahb7808r-ms_firmware
ahb7808t-ms-v2_firmware
ahb7804r-lms_firmware
hi3518e_50h10l_s3…
Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, and HI3518E_50H10L_S39 were all discovered to have port 9530 op… NVD-CWE-noinfo
CVE-2020-22253 2024-11-21 14:13 2022-04-7 Show GitHub Exploit DB Packet Storm
209839 7.5 HIGH
Network
weibo android_software_development_kit An intent redirection issue was doscovered in Sina Weibo Android SDK 4.2.7 (com.sina.weibo.sdk.share.WbShareTransActivity), any unexported Activities could be started by the com.sina.weibo.sdk.share.… NVD-CWE-Other
CVE-2020-23349 2024-11-21 14:13 2022-04-6 Show GitHub Exploit DB Packet Storm
209840 7.5 HIGH
Network
mikrotik routeros A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP requests. CWE-120
Classic Buffer Overflow
CVE-2020-22845 2024-11-21 14:13 2022-03-1 Show GitHub Exploit DB Packet Storm