Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247471 4.3 警告 elinestudio - ESC におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2861 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247472 7.5 危険 aj square - AJSquare AJ Auction Pro Web の category.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2860 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247473 5 警告 AlstraSoft - AlstraSoft AskMe Pro における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-2857 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247474 7.5 危険 easy webstore - Easy Webstore の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2853 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247475 7.5 危険 boatscripts - BoatScripts Classifieds の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2846 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247476 7.5 危険 carscripts - Carscripts Classifieds の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2844 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247477 7.5 危険 doitlive - doITLive CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2843 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247478 4.3 警告 doitlive - doITLive CMS の edit/showmedia.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2842 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
247479 6.8 警告 exerocms - Exero CMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2840 2012-06-26 16:02 2008-06-24 Show GitHub Exploit DB Packet Storm
247480 7.5 危険 cms.brdconcept - CMS-BRD の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2837 2012-06-26 16:02 2008-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219871 5.5 MEDIUM
Local
openexr
fedoraproject
canonical
opensuse
debian
apple
openexr
fedora
ubuntu_linux
leap
debian_linux
mac_os_x
tvos
iphone_os
icloud
itunes
watchos
ipados
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case. CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2020-11762 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219872 5.5 MEDIUM
Local
openexr
fedoraproject
canonical
debian
apple
openexr
fedora
ubuntu_linux
debian_linux
mac_os_x
tvos
iphone_os
icloud
itunes
watchos
ipados
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp. CWE-125
Out-of-bounds Read
CVE-2020-11761 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219873 5.5 MEDIUM
Local
openexr
fedoraproject
canonical
opensuse
debian
apple
openexr
fedora
ubuntu_linux
leap
debian_linux
mac_os_x
tvos
iphone_os
icloud
itunes
watchos
ipados
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp. CWE-125
Out-of-bounds Read
CVE-2020-11760 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219874 5.5 MEDIUM
Local
openexr
fedoraproject
canonical
debian
apple
openexr
fedora
ubuntu_linux
debian_linux
tvos
iphone_os
icloud
itunes
watchos
ipados
mac_os_x
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of… CWE-190
 Integer Overflow or Wraparound
CVE-2020-11759 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219875 5.5 MEDIUM
Local
openexr
fedoraproject
canonical
opensuse
debian
apple
openexr
fedora
ubuntu_linux
leap
debian_linux
mac_os_x
tvos
iphone_os
icloud
itunes
watchos
ipados
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h. CWE-125
Out-of-bounds Read
CVE-2020-11758 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219876 5.5 MEDIUM
Local
cellebrite ufed_firmware Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target devices. Extracted keys can be used to place evidence onto target devices when perfor… CWE-798
 Use of Hard-coded Credentials
CVE-2020-11723 2024-11-21 13:58 2020-04-15 Show GitHub Exploit DB Packet Storm
219877 5.5 MEDIUM
Local
xen
debian
fedoraproject
opensuse
xen
debian_linux
fedora
leap
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain sensitive information about other guests. Unprivileged guests can request to ma… CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2020-11740 2024-11-21 13:58 2020-04-14 Show GitHub Exploit DB Packet Storm
219878 7.5 HIGH
Network
snapcreek duplicator The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init. CWE-22
Path Traversal
CVE-2020-11738 2024-11-21 13:58 2020-04-14 Show GitHub Exploit DB Packet Storm
219879 3.9 LOW
Local
gnome
debian
canonical
file-roller
debian_linux
ubuntu_linux
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the… CWE-22
CWE-59
Path Traversal
Link Following
CVE-2020-11736 2024-11-21 13:58 2020-04-14 Show GitHub Exploit DB Packet Storm
219880 6.1 MEDIUM
Network
cybersolutions cybermail cgi-bin/go in CyberSolutions CyberMail 5 or later allows XSS via the ACTION parameter. CWE-79
Cross-site Scripting
CVE-2020-11734 2024-11-21 13:58 2020-04-14 Show GitHub Exploit DB Packet Storm