Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249161 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-0159 2012-06-14 17:02 2012-05-8 Show GitHub Exploit DB Packet Storm
249162 9.3 危険 マイクロソフト - 複数の Microsoft 製品の TrueType フォント解析処理に脆弱性 CWE-noinfo
情報不足
CVE-2011-3402 2012-06-14 17:00 2011-11-7 Show GitHub Exploit DB Packet Storm
249163 5 警告 Bradford Networks - Bradford Network Sentry のエージェントにおけるワークステーション上で任意のテキストを表示される脆弱性 CWE-287
不適切な認証
CVE-2012-2606 2012-06-14 16:28 2012-06-13 Show GitHub Exploit DB Packet Storm
249164 6.8 警告 Bradford Networks - Bradford Network Sentry の管理インタフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2605 2012-06-14 16:26 2012-06-13 Show GitHub Exploit DB Packet Storm
249165 3.5 注意 Bradford Networks - Bradford Network Sentry の GuestAccess.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2604 2012-06-14 16:24 2012-06-13 Show GitHub Exploit DB Packet Storm
249166 4.3 警告 アドビシステムズ - Adobe ColdFusion のコンポーネントブラウザにおける CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2012-2041 2012-06-14 15:21 2012-06-12 Show GitHub Exploit DB Packet Storm
249167 2.6 注意 MoboTap - Dolphin Browser における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2012-2635 2012-06-14 12:01 2012-06-14 Show GitHub Exploit DB Packet Storm
249168 9.3 危険 アップル - Apple iTunes におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0677 2012-06-14 11:51 2012-06-12 Show GitHub Exploit DB Packet Storm
249169 7.2 危険 アドビシステムズ - Adobe Flash Player および Adobe AIR のインストーラにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2012-2040 2012-06-13 16:43 2012-06-8 Show GitHub Exploit DB Packet Storm
249170 10 危険 アドビシステムズ - Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-2039 2012-06-13 16:42 2012-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209931 5.3 MEDIUM
Network
premid premid managers/socketManager.ts in PreMiD through 2.1.3 has a locally hosted socketio web server (port 3020) open to all origins, which allows attackers to obtain sensitive Discord user information. CWE-862
 Missing Authorization
CVE-2020-24928 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209932 6.5 MEDIUM
Network
stiltsoft table_filter_and_charts_for_confluence_server The Table Filter and Charts for Confluence Server app before 5.3.26 (for Atlassian Confluence) allows SSRF via the "Table from CSV" macro (URL parameter). CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-24898 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209933 8.9 HIGH
Network
stiltsoft table_filter_and_charts_for_confluence_server The Table Filter and Charts for Confluence Server app before 5.3.25 (for Atlassian Confluence) allow remote attackers to inject arbitrary HTML or JavaScript via cross site scripting (XSS) through the… CWE-79
Cross-site Scripting
CVE-2020-24897 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209934 9.8 CRITICAL
Network
mpxj
oracle
mpxj
primavera_unifier
MPXJ through 8.1.3 allows XXE attacks. This affects the GanttProjectReader and PhoenixReader components. CWE-611
XXE
CVE-2020-25020 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209935 7.5 HIGH
Network
jitsi meet_electron jitsi-meet-electron (aka Jitsi Meet Electron) before 2.3.0 calls the Electron shell.openExternal function without verifying that the URL is for an http or https resource, in some circumstances. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-25019 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209936 9.1 CRITICAL
Network
rgb-rust_project rgb-rust A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure of uninitialized memory. This occurs because stru… CWE-119
CWE-843
Incorrect Access of Indexable Resource ('Range Error') 
Type Confusion
CVE-2020-25016 2024-11-21 14:16 2020-08-30 Show GitHub Exploit DB Packet Storm
209937 7.8 HIGH
Local
br-automation automation_studio
automation_net\/pvi
Unquoted Search Path or Element vulnerability in B&R Industrial Automation Automation Studio, B&R Industrial Automation NET/PVI allows Target Programs with Elevated Privileges.This issue affects Auto… - CVE-2020-24682 2024-11-21 14:15 2024-02-2 Show GitHub Exploit DB Packet Storm
209938 8.8 HIGH
Local
br-automation automation_studio Incorrect Permission Assignment for Critical Resource vulnerability in B&R Industrial Automation Automation Studio allows Privilege Escalation.This issue affects Automation Studio: from 4.6.0 through… - CVE-2020-24681 2024-11-21 14:15 2024-02-2 Show GitHub Exploit DB Packet Storm
209939 5.5 MEDIUM
Local
ghost sqlite3 Buffer Overflow vulnerability found in SQLite3 v.3.27.1 and before allows a local attacker to cause a denial of service via a crafted script. CWE-120
Classic Buffer Overflow
CVE-2020-24736 2024-11-21 14:15 2023-04-12 Show GitHub Exploit DB Packet Storm
209940 9.8 CRITICAL
Network
capexweb_project capexweb Shilpi CAPExWeb 1.1 allows SQL injection via a servlet/capexweb.cap_sendMail GET request. CWE-89
SQL Injection
CVE-2020-24600 2024-11-21 14:15 2022-12-27 Show GitHub Exploit DB Packet Storm