Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246501 6.8 警告 creasito - Portale e-commerce Creasito における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4925 2012-06-26 16:19 2010-07-12 Show GitHub Exploit DB Packet Storm
246502 4.3 警告 dan pascu - Dan Pascu python-cjson における特定のクロスサイトスクリプティング攻撃を誘発する脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4924 2012-06-26 16:19 2010-07-2 Show GitHub Exploit DB Packet Storm
246503 6.8 警告 dootzky - oBlog の admin/index.php における総当りパスワード推測攻撃を実行される脆弱性 CWE-287
不適切な認証
CVE-2009-4909 2012-06-26 16:19 2010-06-25 Show GitHub Exploit DB Packet Storm
246504 4.3 警告 dootzky - oBlog におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4908 2012-06-26 16:19 2010-06-25 Show GitHub Exploit DB Packet Storm
246505 6.8 警告 dootzky - oBlog におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4907 2012-06-26 16:19 2010-06-25 Show GitHub Exploit DB Packet Storm
246506 7.8 危険 シスコシステムズ - Cisco ASA 5580 シリーズの DTLS 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4923 2012-06-26 16:19 2009-04-6 Show GitHub Exploit DB Packet Storm
246507 6.8 警告 シスコシステムズ - Cisco ASA 5580 シリーズにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4922 2012-06-26 16:19 2009-04-6 Show GitHub Exploit DB Packet Storm
246508 7.8 危険 シスコシステムズ - Cisco ASA 5580 シリーズにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-4921 2012-06-26 16:19 2009-04-6 Show GitHub Exploit DB Packet Storm
246509 7.8 危険 シスコシステムズ - Cisco ASA 5580 シリーズの CTM におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4920 2012-06-26 16:19 2009-04-6 Show GitHub Exploit DB Packet Storm
246510 10 危険 シスコシステムズ - Cisco ASA 5580 シリーズにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4919 2012-06-26 16:19 2009-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
218041 9.8 CRITICAL
Network
mi xiaomi The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… NVD-CWE-noinfo
CVE-2020-14131 2024-11-21 14:02 2022-10-12 Show GitHub Exploit DB Packet Storm
218042 9.8 CRITICAL
Network
mi xiaomi A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. NVD-CWE-noinfo
CVE-2020-14129 2024-11-21 14:02 2022-10-12 Show GitHub Exploit DB Packet Storm
218043 7.5 HIGH
Network
mi sound Information leakage vulnerability exists in the Mi Sound APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive info… NVD-CWE-noinfo
CVE-2020-14126 2024-11-21 14:02 2022-07-23 Show GitHub Exploit DB Packet Storm
218044 7.5 HIGH
Network
mi smarthome information leakage vulnerability exists in the Xiaomi SmartHome APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensit… NVD-CWE-noinfo
CVE-2020-14114 2024-11-21 14:02 2022-07-23 Show GitHub Exploit DB Packet Storm
218045 7.5 HIGH
Network
mi miui A denial of service vulnerability exists in some Xiaomi models of phones. The vulnerability is caused by heap overflow and can be exploited by attackers to make remote denial of service. CWE-787
 Out-of-bounds Write
CVE-2020-14127 2024-11-21 14:02 2022-07-15 Show GitHub Exploit DB Packet Storm
218046 7.5 HIGH
Network
mi miui A denial of service vulnerability exists in some Xiaomi models of phones. The vulnerability is caused by out-of-bound read/write and can be exploited by attackers to make denial of service. CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2020-14125 2024-11-21 14:02 2022-06-9 Show GitHub Exploit DB Packet Storm
218047 7.5 HIGH
Network
mi miui There is a pointer double free vulnerability in Some MIUI Services. When a function is called, the memory pointer is copied to two function modules, and an attacker can cause the pointer to be repeat… CWE-415
 Double Free
CVE-2020-14123 2024-11-21 14:02 2022-04-23 Show GitHub Exploit DB Packet Storm
218048 5.5 MEDIUM
Local
mi miui Some Xiaomi phones have information leakage vulnerabilities, and some of them may be able to forge a specific identity due to the lack of parameter verification, resulting in user information leakage. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-14122 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
218049 5.5 MEDIUM
Local
mi mi_app_store A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to per… CWE-863
 Incorrect Authorization
CVE-2020-14121 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
218050 8.8 HIGH
Network
mi miui Some Xiaomi models have a vulnerability in a certain application. The vulnerability is caused by the lack of checksum when using a three-party application to pass in parameters, and attackers can ind… CWE-354
 Improper Validation of Integrity Check Value
CVE-2020-14120 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm