Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231101 4.3 警告 smart-shop - Smart-Shop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5725 2012-12-20 18:33 2007-10-30 Show GitHub Exploit DB Packet Storm
231102 6.8 警告 profilecms - ProfileCMS の profiles スクリプトにおける任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5720 2012-12-20 18:33 2007-10-30 Show GitHub Exploit DB Packet Storm
231103 4.9 警告 vobcopy - vobcopy における任意のファイルへデータを追加される脆弱性 CWE-59
リンク解釈の問題
CVE-2007-5718 2012-12-20 18:33 2007-10-30 Show GitHub Exploit DB Packet Storm
231104 4.4 警告 VMware - VMware Workstation などの VMware Tools パッケージにおけるゲストカーネルメモリ内で任意のメモリ領域を変更される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5671 2012-12-20 18:33 2008-06-4 Show GitHub Exploit DB Packet Storm
231105 10 危険 TIBCO Software - TIBCO SmartSockets RTserver などの製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2007-5658 2012-12-20 18:33 2008-01-15 Show GitHub Exploit DB Packet Storm
231106 10 危険 TIBCO Software - TIBCO SmartSockets Rtserver などの製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5657 2012-12-20 18:33 2008-01-15 Show GitHub Exploit DB Packet Storm
231107 10 危険 TIBCO Software - TIBCO SmartSockets RTserver などの製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-5656 2012-12-20 18:33 2008-01-15 Show GitHub Exploit DB Packet Storm
231108 10 危険 TIBCO Software - TIBCO SmartSockets RTserve などの製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2007-5655 2012-12-20 18:33 2008-01-15 Show GitHub Exploit DB Packet Storm
231109 10 危険 サン・マイクロシステムズ - x86 上の Sun Fire X2100 M2 および X2200 M2 ELOM における SP 上でルートとして任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2007-5717 2012-12-20 18:33 2007-09-28 Show GitHub Exploit DB Packet Storm
231110 2.6 注意 WordPress.org - WordPress の wp-admin/edit-post-rows.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5710 2012-12-20 18:33 2007-10-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213231 9.8 CRITICAL
Network
we-com opendata_cms We-com OpenData CMS 2.0 allows SQL Injection via the username field on the administrator login page. CWE-89
SQL Injection
CVE-2020-15540 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213232 9.8 CRITICAL
Network
we-com municipality_portal_cms SQL injection can occur in We-com Municipality portal CMS 2.1.x via the cerca/ keywords field. CWE-89
SQL Injection
CVE-2020-15539 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213233 6.1 MEDIUM
Network
we-com municipality_portal_cms XSS can occur in We-com Municipality portal CMS 2.1.x via the cerca/ search bar. CWE-79
Cross-site Scripting
CVE-2020-15538 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213234 6.1 MEDIUM
Network
vanguard_project vanguard An issue was discovered in the Vanguard plugin 2.1 for WordPress. XSS can occur via the mails/new title field, a product field to the p/ URI, or the Products Search box. CWE-79
Cross-site Scripting
CVE-2020-15537 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213235 6.1 MEDIUM
Network
online_hotel_booking_system_project online_hotel_booking_system An issue was discovered in the bestsoftinc Hotel Booking System Pro plugin through 1.1 for WordPress. Persistent XSS can occur via any of the registration fields. CWE-79
Cross-site Scripting
CVE-2020-15536 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213236 6.1 MEDIUM
Network
bestsoftinc car_rental_system An issue was discovered in the bestsoftinc Car Rental System plugin through 1.3 for WordPress. Persistent XSS can occur via any of the registration fields. CWE-79
Cross-site Scripting
CVE-2020-15535 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
213237 7.5 HIGH
Network
wireshark
opensuse
debian
wireshark
leap
debian_linux
In Wireshark 3.2.0 to 3.2.4, the GVCP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-gvcp.c by ensuring that an offset increases in all situations. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-15466 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
213238 7.8 HIGH
Local
valvesoftware steam_client An issue was discovered in Valve Steam Client 2.10.91.91. The installer allows local users to gain NT AUTHORITY\SYSTEM privileges because some parts of %PROGRAMFILES(X86)%\Steam and/or %COMMONPROGRAM… CWE-362
Race Condition
CVE-2020-15530 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
213239 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user installs a game or performs a verify/repair operation. The issue exists because of weak fil… CWE-667
CWE-732
 Improper Locking
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15529 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
213240 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user starts or uninstalls a game because of weak file permissions and missing file integrity che… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15528 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm