Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232251 7.5 危険 YourFreeWorld.com - YourFreeWorld Jokes Site Script の jokes.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2065 2012-12-20 18:52 2008-05-2 Show GitHub Exploit DB Packet Storm
232252 10 危険 phpgedview - PhpGedView における脆弱性 CWE-noinfo
情報不足
CVE-2008-2064 2012-12-20 18:52 2008-05-2 Show GitHub Exploit DB Packet Storm
232253 4.3 警告 softpedia - Softpedia SiteXS CMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2046 2012-12-20 18:52 2008-05-1 Show GitHub Exploit DB Packet Storm
232254 5 警告 SugarCRM - SugarCRM Sugar Community Edition における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2045 2012-12-20 18:52 2008-04-10 Show GitHub Exploit DB Packet Storm
232255 6.5 警告 turnkey solutions - Turnkey Web Tools SunShop Shopping Cart の admin/adminindex.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2038 2012-12-20 18:52 2008-04-30 Show GitHub Exploit DB Packet Storm
232256 7.5 危険 Mike Jolley - WordPress 用の Download Monitor プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2034 2012-12-20 18:52 2008-04-30 Show GitHub Exploit DB Packet Storm
232257 7.5 危険 WordPress.org - WordPress 用の Spreadsheet プラグインの ss_load.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1982 2012-12-20 18:52 2008-04-27 Show GitHub Exploit DB Packet Storm
232258 7.5 危険 phphq - phShoutBox Final における権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-1971 2012-12-20 18:52 2008-04-27 Show GitHub Exploit DB Packet Storm
232259 7.5 危険 quate - Quate Grape Web Statistics の includes/functions.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1963 2012-12-20 18:52 2008-04-25 Show GitHub Exploit DB Packet Storm
232260 7.5 危険 sipp - SIPp の call.cpp の get_remote_video_port_media 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1959 2012-12-20 18:52 2008-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211901 7.5 HIGH
Network
ni compactrio_firmware Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that could reboot the CompactRIO (Driver versions prior … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-25191 2024-11-21 14:17 2020-12-11 Show GitHub Exploit DB Packet Storm
211902 7.8 HIGH
Local
we-con levistudiou A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when processing project files. Opening a specially crafted project file could allow a… CWE-787
 Out-of-bounds Write
CVE-2020-25199 2024-11-21 14:17 2020-12-10 Show GitHub Exploit DB Packet Storm
211903 4.8 MEDIUM
Network
arachnys cabot Cross Site Scripting (XSS) vulnerability in Arachnys Cabot 0.11.12 can be exploited via the Address column. CWE-79
Cross-site Scripting
CVE-2020-25449 2024-11-21 14:17 2020-12-5 Show GitHub Exploit DB Packet Storm
211904 9.8 CRITICAL
Network
moddable moddable Heap buffer overflow in the fxCheckArrowFunction function at moddable/xs/sources/xsSyntaxical.c:3562 in Moddable SDK before OS200903. CWE-787
 Out-of-bounds Write
CVE-2020-25462 2024-11-21 14:17 2020-12-5 Show GitHub Exploit DB Packet Storm
211905 7.5 HIGH
Network
moddable moddable Invalid Memory Access in the fxProxyGetter function in moddable/xs/sources/xsProxy.c in Moddable SDK before OS200908 causes a denial of service (SEGV). NVD-CWE-Other
CVE-2020-25461 2024-11-21 14:17 2020-12-5 Show GitHub Exploit DB Packet Storm
211906 5.5 MEDIUM
Local
appimage appimaged AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it. CWE-494
 Download of Code Without Integrity Check
CVE-2020-25266 2024-11-21 14:17 2020-12-3 Show GitHub Exploit DB Packet Storm
211907 6.5 MEDIUM
Network
appimage libappimage AppImage libappimage before 1.0.3 allows attackers to trigger an overwrite of a system-installed .desktop file by providing a .desktop file that contains Name= with path components. NVD-CWE-noinfo
CVE-2020-25265 2024-11-21 14:17 2020-12-3 Show GitHub Exploit DB Packet Storm
211908 8.8 HIGH
Network
we-con plc_editor WECON PLC Editor Versions 1.3.8 and prior has a heap-based buffer overflow vulnerabilities have been identified that may allow arbitrary code execution. CWE-125
Out-of-bounds Read
CVE-2020-25181 2024-11-21 14:17 2020-12-2 Show GitHub Exploit DB Packet Storm
211909 8.8 HIGH
Network
we-con plc_editor WECON PLC Editor Versions 1.3.8 and prior has a stack-based buffer overflow vulnerability has been identified that may allow arbitrary code execution. CWE-787
 Out-of-bounds Write
CVE-2020-25177 2024-11-21 14:17 2020-12-2 Show GitHub Exploit DB Packet Storm
211910 9.8 CRITICAL
Network
rtautomation 499es_ethernet\/ip_adaptor_firmware 499ES EtherNet/IP (ENIP) Adaptor Source Code is vulnerable to a stack-based buffer overflow, which may allow an attacker to send a specially crafted packet that may result in a denial-of-service cond… CWE-787
 Out-of-bounds Write
CVE-2020-25159 2024-11-21 14:17 2020-11-25 Show GitHub Exploit DB Packet Storm