Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248011 10 危険 アドビシステムズ - Adobe Flash Media Server および Connect Enterprise Server における影響のあるシステムのコントロールを奪取される脆弱性 CWE-DesignError
CVE-2007-6431 2012-06-26 15:54 2008-02-12 Show GitHub Exploit DB Packet Storm
248012 7.8 危険 DELL EMC (旧 EMC Corporation) - EMC RepliStor SP2 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6426 2012-06-26 15:54 2008-02-20 Show GitHub Exploit DB Packet Storm
248013 4.3 警告 Digium - Asterisk Open Source における有効なユーザ名を使用して認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2007-6430 2012-06-26 15:54 2007-12-18 Show GitHub Exploit DB Packet Storm
248014 4.3 警告 Fonality - Fonality Trixbox PBX 製品の registry.pl における任意のコマンド実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6424 2012-06-26 15:54 2007-12-18 Show GitHub Exploit DB Packet Storm
248015 2.1 注意 Debian - Debian GNU/Linux の libdspam7-drv-mysql cron job におけるパスワードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2007-6418 2012-06-26 15:54 2007-10-29 Show GitHub Exploit DB Packet Storm
248016 8.5 危険 Debian - scponly における任意のファイルを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6415 2012-06-26 15:54 2007-08-10 Show GitHub Exploit DB Packet Storm
248017 7.5 危険 adultscript - Adult Script の admin/administrator.php における認証を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2007-6414 2012-06-26 15:54 2007-12-17 Show GitHub Exploit DB Packet Storm
248018 6.8 警告 Bitweaver - Bitweaver の wiki/index.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6412 2012-06-26 15:54 2007-12-17 Show GitHub Exploit DB Packet Storm
248019 4.3 警告 gadu-gadu - Gadu-Gadu の GG Client の HandleEmotsConfig 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6411 2012-06-26 15:54 2007-12-17 Show GitHub Exploit DB Packet Storm
248020 4.3 警告 gadu-gadu - Gadu-Gadu におけるクロスサイトリクエストフォージェリ攻撃の脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-6410 2012-06-26 15:54 2007-12-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210811 7.3 HIGH
Network
datatables datatables.net All versions of package datatables.net are vulnerable to Prototype Pollution due to an incomplete fix for https://snyk.io/vuln/SNYK-JS-DATATABLESNET-598806. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-28458 2024-11-21 14:22 2020-12-16 Show GitHub Exploit DB Packet Storm
210812 7.2 HIGH
Network
alumni_management_system_project alumni_management_system A Remote Code Execution vulnerability exists in DourceCodester Alumni Management System 1.0. An authenticated attacker can upload arbitrary file in the gallery.php page and executing it on the server… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28072 2024-11-21 14:22 2020-12-16 Show GitHub Exploit DB Packet Storm
210813 4.8 MEDIUM
Network
s-cart s-cart This affects the package s-cart/core before 4.4. The search functionality of the admin dashboard in core/src/Admin/Controllers/AdminOrderController.phpindex is vulnerable to XSS. CWE-79
Cross-site Scripting
CVE-2020-28457 2024-11-21 14:22 2020-12-16 Show GitHub Exploit DB Packet Storm
210814 6.1 MEDIUM
Network
s-cart s-cart The package s-cart/core before 4.4 are vulnerable to Cross-site Scripting (XSS) via the admin panel. CWE-79
Cross-site Scripting
CVE-2020-28456 2024-11-21 14:22 2020-12-16 Show GitHub Exploit DB Packet Storm
210815 5.5 MEDIUM
Local
foxitsoftware foxit_reader
phantompdf
An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/dereference while opening a crafted PDF file, leading the application to crash (denial … CWE-476
 NULL Pointer Dereference
CVE-2020-28203 2024-11-21 14:22 2020-12-15 Show GitHub Exploit DB Packet Storm
210816 9.8 CRITICAL
Network
js-data js-data All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn function. NVD-CWE-Other
CVE-2020-28442 2024-11-21 14:22 2020-12-15 Show GitHub Exploit DB Packet Storm
210817 7.3 HIGH
Network
siemens sicam_a8000_cp-8000_firmware
sicam_a8000_cp-8021_firmware
sicam_a8000_cp-8022_firmware
A vulnerability has been identified in SICAM A8000 CP-8000 (All versions < V16), SICAM A8000 CP-8021 (All versions < V16), SICAM A8000 CP-8022 (All versions < V16). A web server misconfiguration of t… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-28396 2024-11-21 14:22 2020-12-15 Show GitHub Exploit DB Packet Storm
210818 9.8 CRITICAL
Network
corenlp-js-interface_project corenlp-js-interface All versions of package corenlp-js-interface are vulnerable to Command Injection via the main function. CWE-78
OS Command 
CVE-2020-28440 2024-11-21 14:22 2020-12-12 Show GitHub Exploit DB Packet Storm
210819 9.8 CRITICAL
Network
corenlp-js-prefab_project corenlp-js-prefab This affects all versions of package corenlp-js-prefab. The injection point is located in line 10 in 'index.js.' It depends on a vulnerable package 'corenlp-js-interface.' Vulnerability can be exploi… CWE-78
OS Command 
CVE-2020-28439 2024-11-21 14:22 2020-12-12 Show GitHub Exploit DB Packet Storm
210820 6.8 MEDIUM
Adjacent
schneider-electric modicon_m258_firmware
somachine
somachine_motion
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior to V5.0.4.11) and SoMachine/SoMachine Motion softw… - CVE-2020-28220 2024-11-21 14:22 2020-12-11 Show GitHub Exploit DB Packet Storm