Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230901 6.8 警告 VideoLAN - VideoLAN VLC の CDDA プラグイなどにおけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-0017 2012-12-20 18:19 2007-01-2 Show GitHub Exploit DB Packet Storm
230902 4.4 警告 サン・マイクロシステムズ - ChainKey Java Code Protection における Java クラスファイルをデコンパイルされる脆弱性 CWE-310
暗号の問題
CVE-2007-0014 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230903 7.8 危険 Canonical - Ubuntu 上で稼動する Linux Kernel の skge ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2006-7229 2012-12-20 18:19 2007-11-14 Show GitHub Exploit DB Packet Storm
230904 7.8 危険 SAP - SAP SAPLPD におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-7220 2012-12-20 18:19 2007-07-9 Show GitHub Exploit DB Packet Storm
230905 4.3 警告 ZoneO-soft - phpTrafficA におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7209 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
230906 6.8 警告 republique francaise - Agora の modules/Mysqlfinder/MysqlfinderAdmin.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7194 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230907 4.3 警告 web-app.net - web-app.net WebAPP の cgi-bin/user-lib/topics.pl におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7190 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
230908 4.3 警告 web-app.net - web-app.net WebAPP の cgi-bin/admin/logs.cgi におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7189 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
230909 5 警告 web-app.net - web-app.net WebAPP の cgi-lib/user-lib/search.pl における内部のフォーラム投稿を読まれる脆弱性 - CVE-2006-7188 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
230910 4.3 警告 web-app.net - web-app.net WebAPP の cgi-lib/user-lib/search.pl におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7187 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212531 9.1 CRITICAL
Network
pulsesecure pulse_connect_secure
pulse_policy_secure
An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed on macOS, Linux, and Solaris clients when a Host Checker policy is enforced, ac… CWE-295
Improper Certificate Validation 
CVE-2020-11580 2024-11-21 13:58 2020-04-7 Show GitHub Exploit DB Packet Storm
212532 9.8 CRITICAL
Network
projectworlds official_car_rental_system Project Worlds Official Car Rental System 1 is vulnerable to multiple SQL injection issues, as demonstrated by the email and parameters (account.php), uname and pass parameters (login.php), and id pa… CWE-89
SQL Injection
CVE-2020-11545 2024-11-21 13:58 2020-04-7 Show GitHub Exploit DB Packet Storm
212533 7.2 HIGH
Network
projectworlds official_car_rental_system An issue was discovered in Project Worlds Official Car Rental System 1. It allows the admin user to run commands on the server with their account because the upload section on the file-manager page c… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-11544 2024-11-21 13:58 2020-04-7 Show GitHub Exploit DB Packet Storm
212534 7.8 HIGH
Local
malwarebytes adwcleaner An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner 8.0.3 could cause arbitrary code execution with SYSTEM privileges when a malicious DLL library is loaded. CWE-426
 Untrusted Search Path
CVE-2020-11507 2024-11-21 13:58 2020-04-7 Show GitHub Exploit DB Packet Storm
212535 6.0 MEDIUM
Local
linux
canonical
linux_kernel
ubuntu_linux
An issue was discovered in the Linux kernel through 5.6.2. mpol_parse_str in mm/mempolicy.c has a stack-based out-of-bounds write because an empty nodelist is mishandled during mount option parsing, … CWE-787
 Out-of-bounds Write
CVE-2020-11565 2024-11-21 13:58 2020-04-6 Show GitHub Exploit DB Packet Storm
212536 9.8 CRITICAL
Network
gpac gpac An issue was discovered in libgpac.a in GPAC 0.8.0, as demonstrated by MP4Box. audio_sample_entry_Read in isomedia/box_code_base.c does not properly decide when to make gf_isom_box_del calls. This le… CWE-416
 Use After Free
CVE-2020-11558 2024-11-21 13:58 2020-04-6 Show GitHub Exploit DB Packet Storm
212537 9.8 CRITICAL
Network
search_meter_project search_meter The Search Meter plugin through 2.13.2 for WordPress allows user input introduced in the search bar to be any formula. The attacker could achieve remote code execution via CSV injection if a wp-admin… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-11548 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
212538 5.3 MEDIUM
Network
paessler prtg_network_monitor PRTG Network Monitor before 20.1.57.1745 allows remote unauthenticated attackers to obtain information about probes running or the server itself (CPU usage, memory, Windows version, and internal stat… CWE-306
Missing Authentication for Critical Function
CVE-2020-11547 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
212539 9.8 CRITICAL
Network
3xlogic infinias_eidc32_firmware
infinias_eidc32_web
3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the client side's interpretation of the <KEY>MYKEY</KEY> substring. CWE-287
CWE-319
Improper Authentication
Cleartext Transmission of Sensitive Information
CVE-2020-11542 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
212540 5.5 MEDIUM
Local
ivanti workspace_control Ivanti Workspace Control before 10.4.30.0, when SCCM integration is enabled, allows local users to obtain sensitive information (keying material). NVD-CWE-noinfo
CVE-2020-11533 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm