Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230841 7.5 危険 techno dreams - Techno Dreams Articles & Papers Package の ArticlesTableview.asp における SQL インジェクションの脆弱性 - CVE-2006-4891 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230842 7.5 危険 unak - UNAK-CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4890 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230843 5.1 警告 telekorn - Telekorn SL における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4889 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230844 7.5 危険 shadowed portal - Shadowed Portal における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4885 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230845 5 警告 phpquiz - Walter Beschmout PhpQuiz における重要な情報を取得される脆弱性 - CVE-2006-4865 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230846 4.3 警告 roller weblogger - Roller WebLogger におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4856 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230847 4.9 警告 シマンテック - Symantec Norton Personal Firewall などの \Device\SymEvent ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2006-4855 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
230848 7.5 危険 quadcomm - QuadComm Q-Shop の browse.asp における SQL インジェクションの脆弱性 - CVE-2006-4852 2012-12-20 18:02 2006-09-18 Show GitHub Exploit DB Packet Storm
230849 5 警告 ソフォス - Sophos Anti-Virus におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4839 2012-12-20 18:02 2006-11-1 Show GitHub Exploit DB Packet Storm
230850 7.5 危険 phpquiz - Jule Slootbeek phpQuiz の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4834 2012-12-20 18:02 2006-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211611 7.5 HIGH
Network
linuxfoundation indy-node In Indy Node 1.12.2, there is an Uncontrolled Resource Consumption vulnerability. Indy Node has a bug in TAA handling code. The current primary can be crashed with a malformed transaction from a clie… - CVE-2020-11090 2024-11-21 13:56 2020-06-11 Show GitHub Exploit DB Packet Storm
211612 6.5 MEDIUM
Network
redhat
canonical
openstack-cinder
ubuntu_linux
An insecure-credentials flaw was found in all openstack-cinder versions before openstack-cinder 14.1.0, all openstack-cinder 15.x.x versions before openstack-cinder 15.2.0 and all openstack-cinder 16… CWE-522
 Insufficiently Protected Credentials
CVE-2020-10755 2024-11-21 13:56 2020-06-11 Show GitHub Exploit DB Packet Storm
211613 5.0 MEDIUM
Network
qemu
redhat
opensuse
canonical
qemu
enterprise_linux
leap
ubuntu_linux
An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near th… CWE-617
 Reachable Assertion
CVE-2020-10761 2024-11-21 13:56 2020-06-9 Show GitHub Exploit DB Packet Storm
211614 7.8 HIGH
Local
linux
opensuse
redhat
fedoraproject
debian
canonical
netapp
linux_kernel
leap
enterprise_linux
enterprise_mrg
fedora
debian_linux
ubuntu_linux
cloud_backup
steelstore_cloud_integrated_storage
active_iq_unified_manager
A flaw was found in the Linux Kernel in versions after 4.5-rc1 in the way mremap handled DAX Huge Pages. This flaw allows a local attacker with access to a DAX enabled storage to escalate their privi… CWE-119
CWE-843
Incorrect Access of Indexable Resource ('Range Error') 
Type Confusion
CVE-2020-10757 2024-11-21 13:56 2020-06-9 Show GitHub Exploit DB Packet Storm
211615 4.3 MEDIUM
Network
gnome
fedoraproject
networkmanager
fedora
It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network us… CWE-306
Missing Authentication for Critical Function
CVE-2020-10754 2024-11-21 13:56 2020-06-9 Show GitHub Exploit DB Packet Storm
211616 8.6 HIGH
Network
perl
fedoraproject
opensuse
netapp
oracle
perl
fedora
leap
snap_creator_framework
oncommand_workflow_automation
communications_eagle_lnp_application_processor
sd-wan_aware
enterprise_manager_base_platform
communicatio…
Perl before 5.30.3 has an integer overflow related to mishandling of a "PL_regkind[OP(n)] == NOTHING" situation. A crafted regular expression could lead to malformed bytecode with a possibility of in… CWE-190
 Integer Overflow or Wraparound
CVE-2020-10878 2024-11-21 13:56 2020-06-5 Show GitHub Exploit DB Packet Storm
211617 9.8 CRITICAL
Network
octobercms debugbar The October CMS debugbar plugin before version 3.1.0 contains a feature where it will log all requests (and all information pertaining to each request including session data) whenever it is enabled. … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-11094 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
211618 5.8 MEDIUM
Network
weave weave_net In Weave Net before version 2.6.3, an attacker able to run a process as root in a container is able to respond to DNS requests from the host and thereby insert themselves as a fake service. In a clus… - CVE-2020-11091 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
211619 7.5 HIGH
Network
nghttp2
debian
opensuse
fedoraproject
oracle
nodejs
nghttp2
debian_linux
leap
fedora
enterprise_communications_broker
graalvm
mysql
blockchain_platform
banking_extensibility_workbench
node.js
In nghttp2 before version 1.41.0, the overly large HTTP/2 SETTINGS frame payload causes denial of service. The proof of concept attack involves a malicious client constructing a SETTINGS frame with a… - CVE-2020-11080 2024-11-21 13:56 2020-06-4 Show GitHub Exploit DB Packet Storm
211620 6.1 MEDIUM
Network
mediawiki mediawiki resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page. CWE-601
Open Redirect
CVE-2020-10959 2024-11-21 13:56 2020-06-2 Show GitHub Exploit DB Packet Storm