Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249241 7.6 危険 アドビシステムズ
アップル
ヒューレット・パッカード
OpenSSL Project
VMware
レッドハット
- OpenSSL の ssl/t1_lib.c における任意のコードを実行される脆弱性 CWE-362
競合状態
CVE-2010-3864 2012-06-20 17:08 2010-11-16 Show GitHub Exploit DB Packet Storm
249242 9.3 危険 The Document Foundation - LibreOffice に複数の脆弱性 CWE-119
バッファエラー
CVE-2011-2685  2012-06-20 17:03 2011-06-23 Show GitHub Exploit DB Packet Storm
249243 3.3 注意 Gajim.org - Gajim の src/common/latex.py における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2012-2093 2012-06-20 16:45 2012-04-10 Show GitHub Exploit DB Packet Storm
249244 9.3 危険 マイクロソフト - Microsoft Excel および Microsoft Office における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0141 2012-06-20 16:29 2012-05-8 Show GitHub Exploit DB Packet Storm
249245 7.5 危険 Mozilla Foundation - 複数の Mozilla 製品の nsHTMLSelectElement 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-3671 2012-06-20 15:24 2012-06-18 Show GitHub Exploit DB Packet Storm
249246 3.6 注意 MantisBT Group - MantisBT におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2692 2012-06-20 15:15 2012-06-2 Show GitHub Exploit DB Packet Storm
249247 7.5 危険 MantisBT Group - MantisBT の mc_issue_note_update 関数における任意の bugnote を編集される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2691 2012-06-20 15:09 2012-06-3 Show GitHub Exploit DB Packet Storm
249248 7.5 危険 PyPam - PyPam の PAMmodule.c 内の PyPAM_conv におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-1502 2012-06-20 14:22 2012-06-16 Show GitHub Exploit DB Packet Storm
249249 5 警告 レッドハット - Red Hat Network Satellite におけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2012-1145 2012-06-20 13:56 2012-03-29 Show GitHub Exploit DB Packet Storm
249250 5 警告 GNU Project - Gnash の plugin/npapi/plugin.cpp における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4328 2012-06-20 10:35 2012-06-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209691 7.5 HIGH
Network
lionwiki lionwiki LionWiki before 3.2.12 allows an unauthenticated user to read files as the web server user via crafted string in the index.php f1 variable, aka Local File Inclusion. NOTE: This vulnerability only aff… NVD-CWE-noinfo
CVE-2020-27191 2024-11-21 14:20 2020-11-17 Show GitHub Exploit DB Packet Storm
209692 7.5 HIGH
Network
eclipse hono In Eclipse Hono version 1.3.0 and 1.4.0 the AMQP protocol adapter does not verify the size of AMQP messages received from devices. In particular, a device may send messages that are bigger than the m… NVD-CWE-noinfo
CVE-2020-27217 2024-11-21 14:20 2020-11-14 Show GitHub Exploit DB Packet Storm
209693 6.1 MEDIUM
Network
sap fiori_launchpad_\(news_tile_application\) SAP Fiori Launchpad (News tile Application), versions - 750,751,752,753,754,755, allows an unauthorized attacker to use SAP Fiori Launchpad News tile Application to send malicious code, to a differen… CWE-79
Cross-site Scripting
CVE-2020-26825 2024-11-21 14:20 2020-11-14 Show GitHub Exploit DB Packet Storm
209694 6.1 MEDIUM
Network
ckeditor
oracle
ckeditor
banking_platform
peoplesoft_enterprise_peopletools
agile_plm
commerce_merchandising
jd_edwards_enterpriseone_tools
financial_services_analytical_applications_infrastructure…
A cross-site scripting (XSS) vulnerability in the Color Dialog plugin for CKEditor 4.15.0 allows remote attackers to run arbitrary web script after persuading a user to copy and paste crafted HTML co… CWE-79
Cross-site Scripting
CVE-2020-27193 2024-11-21 14:20 2020-11-13 Show GitHub Exploit DB Packet Storm
209695 7.2 HIGH
Network
sapplica sentrifugo In Sentrifugo 3.2, admin can edit employee's informations via this endpoint --> /sentrifugo/index.php/empadditionaldetails/edit/userid/2. In this POST request, "employeeNumId" parameter is affected b… CWE-89
SQL Injection
CVE-2020-26805 2024-11-21 14:20 2020-11-13 Show GitHub Exploit DB Packet Storm
209696 8.8 HIGH
Network
sapplica sentrifugo In Sentrifugo 3.2, users can share an announcement under "Organization -> Announcements" tab. Also, in this page, users can upload attachments with the shared announcements. This "Upload Attachment" … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-26804 2024-11-21 14:20 2020-11-13 Show GitHub Exploit DB Packet Storm
209697 8.8 HIGH
Network
sapplica sentrifugo In Sentrifugo 3.2, users can upload an image under "Assets -> Add" tab. This "Upload Images" functionality is suffered from "Unrestricted File Upload" vulnerability so attacker can upload malicious f… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-26803 2024-11-21 14:20 2020-11-13 Show GitHub Exploit DB Packet Storm
209698 10.0 CRITICAL
Network
sap solution_manager SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Upgrade Legacy Ports Service, this has an… CWE-306
Missing Authentication for Critical Function
CVE-2020-26824 2024-11-21 14:20 2020-11-11 Show GitHub Exploit DB Packet Storm
209699 8.8 HIGH
Network
tibco iprocess_workspace_browser The Core component of TIBCO Software Inc.'s TIBCO iProcess Workspace (Browser) contains a vulnerability that theoretically allows an unauthenticated attacker with network access to execute a Cross Si… CWE-352
 Origin Validation Error
CVE-2020-27146 2024-11-21 14:20 2020-11-11 Show GitHub Exploit DB Packet Storm
209700 10.0 CRITICAL
Network
sap solution_manager SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Upgrade Diagnostics Agent Connection Serv… CWE-306
Missing Authentication for Critical Function
CVE-2020-26823 2024-11-21 14:20 2020-11-11 Show GitHub Exploit DB Packet Storm