Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230911 6.8 警告 runcms - RunCMS におけるパスワードを変更される脆弱性 CWE-DesignError
CVE-2007-6547 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230912 6.4 警告 runcms - RunCMS におけるセッションをハイジャックされる脆弱性 CWE-DesignError
CVE-2007-6546 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230913 4.3 警告 runcms - RunCMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6545 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230914 7.5 危険 runcms - RunCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6544 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230915 6.8 警告 winuae - WinUAE の zfile.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6537 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230916 6.8 警告 ヤフー株式会社 - Yahoo! Toolbar の YShortcut.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6535 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230917 10 危険 Tiki Software Community Association - TikiWiki における脆弱性 CWE-noinfo
情報不足
CVE-2007-6529 2012-12-20 18:34 2007-12-22 Show GitHub Exploit DB Packet Storm
230918 5 警告 Tiki Software Community Association - TikiWiki の tiki-listmovies.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6528 2012-12-20 18:34 2007-12-22 Show GitHub Exploit DB Packet Storm
230919 5.8 警告 rickard andersson - PunBB 用の imgUpload モジュールを伴う Automatic Image Upload における任意のコンテンツをアップロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2007-6527 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
230920 4.3 警告 Tiki Software Community Association - TikiWiki の tiki-special_chars.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6526 2012-12-20 18:34 2007-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209991 7.5 HIGH
Network
phpgurukul hospital_management_system PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\user-login.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensitive inf… CWE-89
SQL Injection
CVE-2020-22165 2024-11-21 14:13 2021-06-23 Show GitHub Exploit DB Packet Storm
209992 7.5 HIGH
Network
phpgurukul hospital_management_system PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\check_availability.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensi… CWE-89
SQL Injection
CVE-2020-22164 2024-11-21 14:13 2021-06-23 Show GitHub Exploit DB Packet Storm
209993 8.8 HIGH
Network
akaunting akaunting Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-22390 2024-11-21 14:13 2021-06-22 Show GitHub Exploit DB Packet Storm
209994 9.8 CRITICAL
Network
74cms 74cms SQL Injection in 74cms 3.2.0 via the id parameter to wap/wap-company-show.php. CWE-89
SQL Injection
CVE-2020-22212 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
209995 9.8 CRITICAL
Network
74cms 74cms SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php. CWE-89
SQL Injection
CVE-2020-22211 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
209996 9.8 CRITICAL
Network
74cms 74cms SQL Injection in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php. CWE-89
SQL Injection
CVE-2020-22210 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
209997 9.8 CRITICAL
Network
74cms 74cms SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php. CWE-89
SQL Injection
CVE-2020-22209 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
209998 9.8 CRITICAL
Network
74cms 74cms SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php. CWE-89
SQL Injection
CVE-2020-22208 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
209999 9.8 CRITICAL
Network
shopex ecshop SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php. CWE-89
SQL Injection
CVE-2020-22206 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm
210000 9.8 CRITICAL
Network
shopex ecshop SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php. CWE-89
SQL Injection
CVE-2020-22205 2024-11-21 14:13 2021-06-17 Show GitHub Exploit DB Packet Storm