Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232011 7.6 危険 VIVOTEK Inc. - MjpegDecoder.dll の Vivotek Motion Jpeg ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3167 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232012 6.8 警告 クアルコム - Qualcomm Eudora におけるバッファオーバーフローの脆弱性 - CVE-2007-3166 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232013 5 警告 The Tor Project - Tor におけるトラフィックの送信元などの匿名性を侵害される脆弱性 - CVE-2007-3165 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232014 5 警告 westbyte - ida の idaiehlp.dll におけるバッファオーバーフローの脆弱性 - CVE-2007-3162 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232015 6.8 警告 visicommedia - Ace-FTP Client におけるバッファオーバーフローの脆弱性 - CVE-2007-3161 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232016 5 警告 tenyearsgone - ASP Folder Gallery の download_script.asp における任意のファイルを読まれる脆弱性 - CVE-2007-3158 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232017 5 警告 SafeNet, Inc - SafeNET High Assurance Remote および SoftRemote におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3157 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232018 5 警告 zen help desk software - Zen Help Desk におけるパスワードを含むデータベースをダウンロードされる脆弱性 - CVE-2007-3146 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232019 6.8 警告 phpwebthings - phpWebThings の core/editor.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3141 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
232020 6.5 警告 WordPress.org - WordPress の xmlrpc.php における SQL インジェクションの脆弱性 - CVE-2007-3140 2012-12-20 18:19 2007-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211961 6.1 MEDIUM
Network
qdpm qdpm qdPM V9.1 is vulnerable to Cross Site Scripting (XSS) via qdPM\install\modules\database_config.php. CWE-79
Cross-site Scripting
CVE-2020-19515 2024-11-21 14:09 2021-09-10 Show GitHub Exploit DB Packet Storm
211962 6.1 MEDIUM
Network
phpwcms phpwcms phpwcms v1.9 contains a cross-site scripting (XSS) vulnerability in /image_zoom.php. CWE-79
Cross-site Scripting
CVE-2020-19855 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211963 9.8 CRITICAL
Network
bluecms_project bluecms BlueCMS v1.6 contains a SQL injection vulnerability via /ad_js.php. CWE-89
SQL Injection
CVE-2020-19853 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211964 7.5 HIGH
Network
rtb1_project rtb1 A lack of target address verification in the BurnMe() function of Rob The Bank 1.0 allows attackers to steal tokens from victim users via a crafted script. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-19769 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211965 7.5 HIGH
Network
tokensale_project tokensale A lack of target address verification in the selfdestructs() function of ICOVO 1.0 allows attackers to steal tokens from victim users via a crafted script. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-19768 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211966 7.5 HIGH
Network
zeroxracer_project zeroxracer A lack of target address verification in the destroycontract() function of 0xRACER 1.0 allows attackers to steal tokens from victim users via a crafted script. NVD-CWE-noinfo
CVE-2020-19767 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211967 7.5 HIGH
Network
tokenerc20_project tokenerc20 The time check operation of PepeAuctionSale 1.0 can be rendered ineffective by assigning a large number to the _duration variable, compromising access control to the application. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-19766 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211968 7.5 HIGH
Network
proofofdiligencetoken_project proofofdiligencetoken An issue in the noReentrance() modifier of the Ethereum-based contract Accounting 1.0 allows attackers to carry out a reentrancy attack. CWE-863
 Incorrect Authorization
CVE-2020-19765 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211969 7.5 HIGH
Network
lcdf
fedoraproject
gifsicle
fedora
The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2020-19752 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
211970 9.1 CRITICAL
Network
gpac gpac An issue was discovered in gpac 0.8.0. The gf_odf_del_ipmp_tool function in odf_code.c has a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2020-19751 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm