Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232511 6.8 警告 reputation - PunBB 用の Reputation プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2787 2012-12-20 19:10 2009-08-17 Show GitHub Exploit DB Packet Storm
232512 7.5 危険 reputation - PunBB 用の Reputation プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2786 2012-12-20 19:10 2009-08-17 Show GitHub Exploit DB Packet Storm
232513 4.3 警告 XOOPS - XOOPS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2783 2012-12-20 19:10 2009-08-17 Show GitHub Exploit DB Packet Storm
232514 7.5 危険 sellatsite.com - Smart ASP Survey の showresult.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2776 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232515 7.5 危険 phparcadescript - PHP Arcade Script の linkout.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2775 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232516 7.5 危険 php-paid4mail - PHP Paid 4 Mail Script の paidbanner.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2774 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232517 7.5 危険 shop-020 - PHP Paid 4 Mail Script の home.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2773 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232518 4.3 警告 realtysoft - PG Roommate Finder Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2772 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232519 7.5 危険 powerupload - PowerUpload における管理者アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2770 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
232520 6.8 警告 ultrize - Ultrize TimeSheet の include/timesheet.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2769 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199081 5.5 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential lo… NVD-CWE-noinfo
CVE-2021-26348 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
199082 4.7 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2021-26347 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
199083 3.3 LOW
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
In SEV guest VMs, the CPU may fail to flush the Translation Lookaside Buffer (TLB) following a particular sequence of operations that includes creation of a new virtual machine control block (VMCB). … NVD-CWE-noinfo
CVE-2021-26342 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
199084 5.5 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
A bug in AMD CPU’s core logic may allow for an attacker, using specific code from an unprivileged VM, to trigger a CPU core hang resulting in a potential denial of service. AMD believes the specific … NVD-CWE-noinfo
CVE-2021-26339 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
199085 7.1 HIGH
Local
amd epyc_7002_firmware
epyc_7001_firmware
epyc_7232p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware
epyc_7302_firmware
epyc_7302p_firmware
Insufficient validation of elliptic curve points in SEV-legacy firmware may compromise SEV-legacy guest migration potentially resulting in loss of guest's integrity or confidentiality. NVD-CWE-noinfo
CVE-2021-26408 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm
199086 6.2 MEDIUM
Local
amd ryzen_5_2600_firmware
ryzen_5_2600x_firmware
ryzen_5_2700x_firmware
ryzen_5_2700_firmware
ryzen_5_3600_firmware
ryzen_5_3600x_firmware
ryzen_7_3700x_firmware
ryzen_7_3800x_firmwa…
A malicious or compromised UApp or ABL may coerce the bootloader into corrupting arbitrary memory potentially leading to loss of integrity of data. NVD-CWE-noinfo
CVE-2021-26390 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm
199087 7.1 HIGH
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Improper validation of destination address in SVC_LOAD_FW_IMAGE_BY_INSTANCE and SVC_LOAD_BINARY_BY_ATTRIB in a malicious UApp or ABL may allow an attacker to overwrite arbitrary bootloader memory wit… CWE-20
 Improper Input Validation 
CVE-2021-26370 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm
199088 7.8 HIGH
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to validate inputs in SMM may allow an attacker to create a mishandled error leaving the DRTM UApp in a partially initialized state potentially resulting in loss of memory integrity. CWE-665
 Improper Initialization
CVE-2021-26353 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm
199089 5.5 MEDIUM
Local
amd ryzen_5_2600_firmware
ryzen_5_2600x_firmware
ryzen_5_2700x_firmware
ryzen_5_2700_firmware
ryzen_5_3600_firmware
ryzen_5_3600x_firmware
ryzen_7_3700x_firmware
ryzen_7_3800x_firmwa…
Insufficient bound checks in System Management Unit (SMU) PCIe Hot Plug table may result in access/updates from/to invalid address space that could result in denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26352 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm
199090 7.1 HIGH
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to verify SEV-ES TMR is not in MMIO space, SEV-ES FW could result in a potential loss of integrity or availability. NVD-CWE-noinfo
CVE-2021-26332 2024-11-21 14:56 2022-05-11 Show GitHub Exploit DB Packet Storm