Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232071 4.3 警告 SAP - SAP Basis コンポーネントの BC-MID-ICF におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3495 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
232072 7.5 危険 Progress Software Corporation - Progress Software OpenEdge の _mprosrv におけるバッファオーバーフローの脆弱性 - CVE-2007-3491 2012-12-20 18:19 2007-06-29 Show GitHub Exploit DB Packet Storm
232073 4.3 警告 Yandex - Yandex Server におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3485 2012-12-20 18:19 2007-06-28 Show GitHub Exploit DB Packet Storm
232074 10 危険 BlackBerry - Research in Motion BlackBerry Enterprise Server におけるマルウェアを読み込む脆弱性 - CVE-2007-3483 2012-12-20 18:19 2007-06-28 Show GitHub Exploit DB Packet Storm
232075 7.8 危険 VideoLAN - VideoLAN VLC Media Player の input.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3468 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
232076 7.8 危険 VideoLAN - VideoLAN VLC Media Player の stats.c における整数オーバーフローの脆弱性 - CVE-2007-3467 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
232077 10 危険 sofaware - Check Point SofaWare Safe@Office における特定のデフォルトパスワードを含む脆弱性 - CVE-2007-3465 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
232078 8.5 危険 sofaware - Check Point SofaWare Safe@Office における権限を取得される脆弱性 - CVE-2007-3464 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
232079 6 警告 sofaware - Check Point SofaWare Safe@Office におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-3462 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
232080 10 危険 トレンドマイクロ - Trend Micro OfficeScan Corporate Edition の cgiChkMasterPwd.exe におけるパスワード要件を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-3455 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211621 8.8 HIGH
Network
zzcms zzcms A blind SQL injection vulnerability exists in zzcms ver201910 based on time (cookie injection). CWE-89
SQL Injection
CVE-2020-23630 2024-11-21 14:13 2021-01-12 Show GitHub Exploit DB Packet Storm
211622 6.1 MEDIUM
Network
jizhicms jizhicms XSS exists in JIZHICMS 1.7.1 via index.php/Error/index?msg={XSS] to Home/c/ErrorController.php. CWE-79
Cross-site Scripting
CVE-2020-23644 2024-11-21 14:13 2021-01-11 Show GitHub Exploit DB Packet Storm
211623 6.1 MEDIUM
Network
jizhicms jizhicms XSS exists in JIZHICMS 1.7.1 via index.php/Wechat/checkWeixin?signature=1&echostr={XSS] to Home/c/WechatController.php. CWE-79
Cross-site Scripting
CVE-2020-23643 2024-11-21 14:13 2021-01-11 Show GitHub Exploit DB Packet Storm
211624 2.3 LOW
Local
gigamon gigavue-os GigaVUE-OS (GVOS) 5.4 - 5.9 uses a weak algorithm for a hash stored in internal database. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-23250 2024-11-21 14:13 2021-01-6 Show GitHub Exploit DB Packet Storm
211625 4.7 MEDIUM
Network
gigamon gigavue-os GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-23249 2024-11-21 14:13 2021-01-6 Show GitHub Exploit DB Packet Storm
211626 7.5 HIGH
Network
veno_file_manager_project veno_file_manager Veno File Manager 3.5.6 is affected by a directory traversal vulnerability. Using the traversal allows an attacker to download sensitive files from the server. CWE-22
Path Traversal
CVE-2020-22550 2024-11-21 14:13 2021-01-5 Show GitHub Exploit DB Packet Storm
211627 9.8 CRITICAL
Network
jsonpickle_project jsonpickle jsonpickle through 1.4.1 allows remote code execution during deserialization of a malicious payload through the decode() function. Note: It has been argued that this is expected and clearly documente… CWE-502
 Deserialization of Untrusted Data
CVE-2020-22083 2024-11-21 14:13 2020-12-18 Show GitHub Exploit DB Packet Storm
211628 7.2 HIGH
Network
txjia imcat imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-23520 2024-11-21 14:13 2020-12-10 Show GitHub Exploit DB Packet Storm
211629 6.1 MEDIUM
Network
yzmcms yzmcms In YzmCMS v5.5 the member contribution function in the editor contains a cross-site scripting (XSS) vulnerability. CWE-79
Cross-site Scripting
CVE-2020-22394 2024-11-21 14:13 2020-11-20 Show GitHub Exploit DB Packet Storm
211630 6.1 MEDIUM
Network
ljcmsshop_project ljcmsshop A cross-site scripting (XSS) vulnerability in Beijing Liangjing Zhicheng Technology Co., Ltd ljcmsshop version 1.14 allows remote attackers to inject arbitrary web script or HTML via user.php by regi… CWE-79
Cross-site Scripting
CVE-2020-22723 2024-11-21 14:13 2020-11-19 Show GitHub Exploit DB Packet Storm