Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231751 9.3 危険 VirusBlokAda Ltd. - VirusBlokAda VBA32 における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5546 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231752 9.3 危険 トレンドマイクロ - Trend Micro AntiVirus の Trend Micro VSAPI における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5545 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231753 9.3 危険 シマンテック - SAV における HTML ドキュメント内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5543 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231754 9.3 危険 ThreatTrack Security, Inc. - Subbelt VIPRE における HTML 文書内のマルウエアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5542 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231755 9.3 危険 ソフォス - Sophos Anti-Virus における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5541 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231756 9.3 危険 securecomputing - Secure Computing Secure Web Gateway における HTML ドキュメント内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5540 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231757 9.3 危険 Beijing Rising International Software - RISING Antivirus における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5539 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231758 9.3 危険 ウェブルート株式会社 - Prevx Prevx における HTML 文書内のマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5538 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231759 9.3 危険 クイックヒール・テクノロジーズ・ジャパン株式会社 - CAT-QuickHeal におけるマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5524 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
231760 7.5 危険 pozscripts - PozScripts Business Directory Script の showcategory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5496 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210631 5.3 MEDIUM
Network
yandex yandex_browser Yandex Browser before 20.10.0 allows remote attackers to spoof the address bar CWE-290
 Authentication Bypass by Spoofing
CVE-2020-27970 2024-11-21 14:22 2021-09-13 Show GitHub Exploit DB Packet Storm
210632 7.3 HIGH
Network
yandex yandex_browser Yandex Browser for Android 20.8.4 allows remote attackers to perform SOP bypass and addresss bar spoofing CWE-346
 Origin Validation Error
CVE-2020-27969 2024-11-21 14:22 2021-09-13 Show GitHub Exploit DB Packet Storm
210633 7.8 HIGH
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. Processing a maliciously crafted font file may l… NVD-CWE-noinfo
CVE-2020-27942 2024-11-21 14:22 2021-09-9 Show GitHub Exploit DB Packet Storm
210634 4.3 MEDIUM
Network
apple apple_tv This issue was addressed with improved file handling. This issue is fixed in Apple TV app for Fire OS 6.1.0.6A142:7.1.0. An attacker with file system access may modify scripts used by the app. NVD-CWE-noinfo
CVE-2020-27940 2024-11-21 14:22 2021-09-9 Show GitHub Exploit DB Packet Storm
210635 6.1 MEDIUM
Network
eyoucms eyoucms Cross Site Scripting (XSS) vulnerability exists in Eyoucms v1.4.7 and earlier via the addonfieldext parameter. CWE-79
Cross-site Scripting
CVE-2020-28146 2024-11-21 14:22 2021-08-19 Show GitHub Exploit DB Packet Storm
210636 7.8 HIGH
Local
prusa3d prusaslicer A use-after-free vulnerability exists in the _3MF_Importer::_handle_end_model() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted 3MF file can lead … CWE-416
 Use After Free
CVE-2020-28594 2024-11-21 14:22 2021-08-18 Show GitHub Exploit DB Packet Storm
210637 9.8 CRITICAL
Network
easycorp zentao The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability. An attacker can upload arbitrary webshell to the server by using the downloadZipPackage() function. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28165 2024-11-21 14:22 2021-08-12 Show GitHub Exploit DB Packet Storm
210638 8.8 HIGH
Network
tinyobjloader_project tinyobjloader An improper array index validation vulnerability exists in the LoadObj functionality of tinyobjloader v2.0-rc1 and tinyobjloader development commit 79d4421. A specially crafted file could lead to cod… CWE-129
 Improper Validation of Array Index
CVE-2020-28589 2024-11-21 14:22 2021-08-11 Show GitHub Exploit DB Packet Storm
210639 5.3 MEDIUM
Network
siemens cpu_1504d_tf_firmware
cpu_1507d_tf_firmware
cpu_1515sp_pc2_tf_firmware
simatic_s7_plcsim_advanced_firmware
simatic_s7-1500_software_controller
tim_1531_irc_firmware
cpu_1211c_firmwa…
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC… CWE-863
 Incorrect Authorization
CVE-2020-28397 2024-11-21 14:22 2021-08-10 Show GitHub Exploit DB Packet Storm
210640 9.8 CRITICAL
Network
jeecg jeecg_boot An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28088 2024-11-21 14:22 2021-08-7 Show GitHub Exploit DB Packet Storm