Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231081 10 危険 xeforum - Xeweb XEForum における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-3500 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
231082 6.4 警告 slackroll - SlackRoll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3499 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
231083 4.3 警告 SAP - SAP NetWeaver Nw04 の BC-WD-JAV におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3496 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
231084 4.3 警告 SAP - SAP Basis コンポーネントの BC-MID-ICF におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3495 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
231085 7.5 危険 Progress Software Corporation - Progress Software OpenEdge の _mprosrv におけるバッファオーバーフローの脆弱性 - CVE-2007-3491 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
231086 4.3 警告 Yandex - Yandex Server におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3485 2012-12-20 18:19 2007-06-28 Show GitHub Exploit DB Packet Storm
231087 10 危険 BlackBerry - Research in Motion BlackBerry Enterprise Server におけるマルウェアを読み込む脆弱性 - CVE-2007-3483 2012-12-20 18:19 2007-06-28 Show GitHub Exploit DB Packet Storm
231088 7.8 危険 VideoLAN - VideoLAN VLC Media Player の input.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3468 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
231089 7.8 危険 VideoLAN - VideoLAN VLC Media Player の stats.c における整数オーバーフローの脆弱性 - CVE-2007-3467 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
231090 10 危険 sofaware - Check Point SofaWare Safe@Office における特定のデフォルトパスワードを含む脆弱性 - CVE-2007-3465 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199251 9.8 CRITICAL
Network
synacor zimbra_collaboration_suite Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7 allows SSRF when WebEx zimlet is installed and zimlet JSP is enabled. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-7796 2024-11-21 14:37 2020-02-19 Show GitHub Exploit DB Packet Storm
199252 9.8 CRITICAL
Network
freebsd freebsd In FreeBSD 12.1-STABLE before r357213, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r357214, and 11.3-RELEASE before 11.3-RELEASE-p6, URL handling in … CWE-787
 Out-of-bounds Write
CVE-2020-7450 2024-11-21 14:37 2020-02-19 Show GitHub Exploit DB Packet Storm
199253 8.8 HIGH
Network
codecov codecov codecov-node npm module before 3.6.5 allows remote attackers to execute arbitrary commands.The value provided as part of the gcov-root argument is executed by the exec function within lib/codecov.js.… CWE-78
OS Command 
CVE-2020-7597 2024-11-21 14:37 2020-02-18 Show GitHub Exploit DB Packet Storm
199254 9.8 CRITICAL
Network
djangoproject django Django 1.11 before 1.11.28, 2.2 before 2.2.10, and 3.0 before 3.0.3 allows SQL Injection if untrusted data is used as a StringAgg delimiter (e.g., in Django applications that offer downloads of data … CWE-89
SQL Injection
CVE-2020-7471 2024-11-21 14:37 2020-02-3 Show GitHub Exploit DB Packet Storm
199255 6.1 MEDIUM
Network
jetbrains youtrack JetBrains YouTrack 2019.2 before 2019.2.59309 was vulnerable to XSS via an issue description. CWE-79
Cross-site Scripting
CVE-2020-7913 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm
199256 5.3 MEDIUM
Network
jetbrains youtrack In JetBrains YouTrack before 2019.2.59309, SMTP/Jabber settings could be accessed using backups. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-7912 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm
199257 6.1 MEDIUM
Network
jetbrains teamcity In JetBrains TeamCity before 2019.2, several user-level pages were vulnerable to XSS. CWE-79
Cross-site Scripting
CVE-2020-7911 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm
199258 5.4 MEDIUM
Network
jetbrains teamcity JetBrains TeamCity before 2019.2 was vulnerable to a stored XSS attack by a user with the developer role. CWE-79
Cross-site Scripting
CVE-2020-7910 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm
199259 7.5 HIGH
Network
jetbrains teamcity In JetBrains TeamCity before 2019.1.5, some server-stored passwords could be shown via the web UI. CWE-522
 Insufficiently Protected Credentials
CVE-2020-7909 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm
199260 4.3 MEDIUM
Network
jetbrains teamcity In JetBrains TeamCity before 2019.1.5, reverse tabnabbing was possible on several pages. CWE-269
 Improper Privilege Management
CVE-2020-7908 2024-11-21 14:37 2020-01-31 Show GitHub Exploit DB Packet Storm