Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249291 5.5 警告 Plone Foundation - Plone の plone.app.users における任意のアカウントのプロパティを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1950 2012-03-27 18:43 2011-06-6 Show GitHub Exploit DB Packet Storm
249292 3.5 注意 Plone Foundation - Plone の safe_html フィルタにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1949 2012-03-27 18:43 2011-06-6 Show GitHub Exploit DB Packet Storm
249293 4.3 警告 Plone Foundation - Plone におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1948 2012-03-27 18:43 2011-06-6 Show GitHub Exploit DB Packet Storm
249294 5 警告 Fetchmail Project - fetchmail におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1947 2012-03-27 18:43 2011-06-2 Show GitHub Exploit DB Packet Storm
249295 7.2 危険 hongli lai - libgnomesu の gnomesu-pam-backend における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1946 2012-03-27 18:43 2011-07-7 Show GitHub Exploit DB Packet Storm
249296 2.1 注意 Fedora Project
レッドハット
- Fedora の NetworkManager パッケージの libnm-util の destroy_one_secret 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-1943 2012-03-27 18:43 2011-06-14 Show GitHub Exploit DB Packet Storm
249297 6.8 警告 VideoLAN
FFmpeg
Libav
- VideoLAN VLC メディアプレイヤーなどの製品で使用される FFmpeg および libav の Sunplus SP5X JPEG デコーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-1931 2012-03-27 18:43 2011-07-7 Show GitHub Exploit DB Packet Storm
249298 5 警告 Wouter Verhelst - nbd-server の nbd-server.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-1925 2012-03-27 18:43 2011-05-31 Show GitHub Exploit DB Packet Storm
249299 5 警告 The Tor Project - Tor の policy_summarize 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-1924 2012-03-27 18:43 2011-02-28 Show GitHub Exploit DB Packet Storm
249300 3.3 注意 ihji
NetBSD
- pmake などの製品で使用される NetBSD の make インクルードファイルにおける任意のファイルを上書される脆弱性 CWE-59
リンク解釈の問題
CVE-2011-1920 2012-03-27 18:43 2011-05-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210701 7.8 HIGH
Local
valvesoftware steam_client An issue was discovered in Valve Steam Client 2.10.91.91. The installer allows local users to gain NT AUTHORITY\SYSTEM privileges because some parts of %PROGRAMFILES(X86)%\Steam and/or %COMMONPROGRAM… CWE-362
Race Condition
CVE-2020-15530 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210702 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user installs a game or performs a verify/repair operation. The issue exists because of weak fil… CWE-667
CWE-732
 Improper Locking
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15529 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210703 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user starts or uninstalls a game because of weak file permissions and missing file integrity che… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15528 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210704 7.8 HIGH
Local
python
netapp
python
snapcenter
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native appl… CWE-427
CWE-908
 Uncontrolled Search Path Element
 Use of Uninitialized Resource
CVE-2020-15523 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210705 8.8 HIGH
Network
veeam veeam_availability_suite
veeam_backup_\&_replication
VeeamFSR.sys in Veeam Availability Suite before 10 and Veeam Backup & Replication before 10 has no device object DACL, which allows unprivileged users to achieve total control over filesystem I/O req… CWE-862
 Missing Authorization
CVE-2020-15518 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
210706 2.3 LOW
Local
qemu
debian
qemu
debian_linux
In QEMU 4.2.0, a MemoryRegionOps object may lack read/write callback methods, leading to a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2020-15469 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
210707 7.5 HIGH
Network
libraw
fedoraproject
debian
libraw
fedora
debian_linux
LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed… CWE-20
 Improper Input Validation 
CVE-2020-15503 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210708 7.5 HIGH
Network
duckduckgo duckduckgo The DuckDuckGo application through 5.58.0 for Android, and through 7.47.1.0 for iOS, sends hostnames of visited web sites within HTTPS .ico requests to servers in the duckduckgo.com domain, which mig… CWE-200
Information Exposure
CVE-2020-15502 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210709 6.1 MEDIUM
Network
tileserver tileservergl An issue was discovered in server.js in TileServer GL through 3.0.0. The content of the key GET parameter is reflected unsanitized in an HTTP response for the application's main page, causing reflect… CWE-79
Cross-site Scripting
CVE-2020-15500 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210710 9.8 CRITICAL
Network
wavlink wl-wn530hg4_firmware An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple buffer overflow vulnerabilities exist in CGI scripts, leading to remote code execution with root privileges. (The … CWE-120
Classic Buffer Overflow
CVE-2020-15490 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm