Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247241 6.8 警告 fuzzylime - fuzzylime (cms) の rss.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3165 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
247242 7.6 危険 fuzzylime - fuzzylime (cms) の blog.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3164 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
247243 9.3 危険 FFmpeg - FFmpeg の str_read_packet 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3162 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
247244 7.8 危険 F5 Networks - F5 FirePass 1200 の SNMP デーモンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3149 2012-06-26 16:02 2008-07-11 Show GitHub Exploit DB Packet Storm
247245 7.5 危険 ashopsoftware - AShop Deluxe の catalogue.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3136 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
247246 5 警告 GraphicsMagick - GraphicsMagick におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-3134 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
247247 6.8 警告 barenuked - BareNuked CMS の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3133 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
247248 7.5 危険 catviz - Catviz の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3129 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
247249 7.5 危険 dreamlevels - DreamNews Manager の dreamnews-rss.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3189 2012-06-26 16:02 2008-07-16 Show GitHub Exploit DB Packet Storm
247250 4.3 警告 Chipmunk Scripts - Blogger におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3186 2012-06-26 16:02 2008-07-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220101 9.8 CRITICAL
Network
dronecode micro_air_vehicle_link The Micro Air Vehicle Link (MAVLink) protocol presents no authentication mechanism on its version 1.0 (nor authorization) whichs leads to a variety of attacks including identity spoofing, unauthorize… CWE-306
Missing Authentication for Critical Function
CVE-2020-10282 2024-11-21 13:55 2020-07-4 Show GitHub Exploit DB Packet Storm
220102 7.5 HIGH
Network
dronecode micro_air_vehicle_link This vulnerability applies to the Micro Air Vehicle Link (MAVLink) protocol and allows a remote attacker to gain access to sensitive information provided it has access to the communication medium. MA… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-10281 2024-11-21 13:55 2020-07-4 Show GitHub Exploit DB Packet Storm
220103 7.5 HIGH
Network
honeywell controledge_plc_firmware
controledge_rtu_firmware
ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes unencrypted passwords on the network. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-10628 2024-11-21 13:55 2020-06-27 Show GitHub Exploit DB Packet Storm
220104 7.5 HIGH
Network
honeywell controledge_plc_firmware
controledge_rtu_firmware
ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes a session token on the network. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-10624 2024-11-21 13:55 2020-06-27 Show GitHub Exploit DB Packet Storm
220105 5.5 MEDIUM
Local
apache
netapp
activemq_artemis
oncommand_workflow_automation
A flaw was found in ActiveMQ Artemis management API from version 2.7.0 up until 2.12.0, where a user inadvertently stores passwords in plaintext in the Artemis shadow file (etc/artemis-users.properti… CWE-312
CWE-522
 Cleartext Storage of Sensitive Information
 Insufficiently Protected Credentials
CVE-2020-10727 2024-11-21 13:55 2020-06-27 Show GitHub Exploit DB Packet Storm
220106 6.5 MEDIUM
Network
redhat
fedoraproject
opensuse
linuxfoundation
canonical
ceph_storage
openstack
fedora
leap
ceph
ubuntu_linux
A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway). The vulnerability is related to the injection of HTTP headers via a CORS ExposeHeader tag. The newline character in the Exp… CWE-74
Injection
CVE-2020-10753 2024-11-21 13:55 2020-06-27 Show GitHub Exploit DB Packet Storm
220107 7.8 HIGH
Local
python
fedoraproject
canonical
pillow
fedora
ubuntu_linux
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c. CWE-120
Classic Buffer Overflow
CVE-2020-10379 2024-11-21 13:55 2020-06-26 Show GitHub Exploit DB Packet Storm
220108 5.5 MEDIUM
Local
python
fedoraproject
canonical
pillow
fedora
ubuntu_linux
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer. CWE-125
Out-of-bounds Read
CVE-2020-10378 2024-11-21 13:55 2020-06-26 Show GitHub Exploit DB Packet Storm
220109 9.8 CRITICAL
Network
mi mijia_inkjet_printer_firmware An issue was discovered on Xiaomi Mi Jia ink-jet printer < 3.4.6_0138. Injecting parameters to ippserver through the web management background, resulting in command execution vulnerabilities. CWE-77
Command Injection
CVE-2020-10561 2024-11-21 13:55 2020-06-25 Show GitHub Exploit DB Packet Storm
220110 7.5 HIGH
Network
mobile-industrial-robots
easyrobotics
uvd-robots
mir100_firmware
mir200_firmware
mir250_firmware
mir500_firmware
mir1000_firmware
er200_firmware
er-lite_firmware
er-flex_firmware
er-one_firmware
uvd_firmware
The Apache server on port 80 that host the web interface is vulnerable to a DoS by spamming incomplete HTTP headers, effectively blocking the access to the dashboard. CWE-404
 Improper Resource Shutdown or Release
CVE-2020-10280 2024-11-21 13:55 2020-06-24 Show GitHub Exploit DB Packet Storm