Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249311 9.3 危険 ブルーコートシステムズ - Blue Coat K9 Web Protection with Filter の filter サービスにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2952 2012-06-26 15:46 2008-08-1 Show GitHub Exploit DB Packet Storm
249312 7.2 危険 エフ・セキュア - 複数の F-Secure 製品の Real-time Scanning コンポーネントにおける権限を取得される脆弱性 - CVE-2007-2965 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
249313 5 警告 エフ・セキュア - F-Secure Policy Manager Server の fsmsh.dll ホストモジュールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2964 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
249314 7.5 危険 filecloset - FileCloset における PHP ファイルをアップロードされる脆弱性 - CVE-2007-2961 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
249315 7.5 危険 cpcommerce - cpCommerce の manufacturer.php における SQL インジェクションの脆弱性 - CVE-2007-2959 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
249316 7.2 危険 シマンテック
numara
centennial
- Numara Asset Manager および他の製品で使用される Centennial Discovery における権限を取得される脆弱性 - CVE-2007-2950 2012-06-26 15:46 2007-07-23 Show GitHub Exploit DB Packet Storm
249317 7.5 危険 david branco - OpenBASE Alpha における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2947 2012-06-26 15:46 2007-05-30 Show GitHub Exploit DB Packet Storm
249318 6.8 警告 flap - FlaP における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2940 2012-06-26 15:46 2007-05-30 Show GitHub Exploit DB Packet Storm
249319 7.5 危険 frequency clock - Frequency Clock における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2936 2012-06-26 15:46 2007-05-30 Show GitHub Exploit DB Packet Storm
249320 7.5 危険 fundanemt - Fundanemt の core/spellcheck/spellcheck.php における任意のコマンドを実行される脆弱性 - CVE-2007-2935 2012-06-26 15:46 2007-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209191 4.5 MEDIUM
Network
jupyter jupyterhub JupyterHub 1.1.0 allows CSRF in the admin panel via a request that lacks an _xsrf field, as demonstrated by a /hub/api/user request (to add or remove a user account). CWE-352
 Origin Validation Error
CVE-2020-36191 2024-11-21 14:28 2021-01-13 Show GitHub Exploit DB Packet Storm
209192 6.1 MEDIUM
Network
rails_admin_project rails_admin RailsAdmin (aka rails_admin) before 1.4.3 and 2.x before 2.0.2 allows XSS via nested forms. CWE-79
Cross-site Scripting
CVE-2020-36190 2024-11-21 14:28 2021-01-13 Show GitHub Exploit DB Packet Storm
209193 7.5 HIGH
Network
socket socket.io-parser socket.io-parser before 3.4.1 allows attackers to cause a denial of service (memory consumption) via a large packet because a concatenation approach is used. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-36049 2024-11-21 14:28 2021-01-8 Show GitHub Exploit DB Packet Storm
209194 7.5 HIGH
Network
socket engine.io Engine.IO before 4.0.0 allows attackers to cause a denial of service (resource consumption) via a POST request to the long polling transport. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-36048 2024-11-21 14:28 2021-01-8 Show GitHub Exploit DB Packet Storm
209195 8.1 HIGH
Network
fasterxml
netapp
debian
oracle
jackson-databind
cloud_backup
service_level_manager
debian_linux
webcenter_portal
primavera_unifier
application_testing_suite
agile_plm
communications_policy_management
com…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool. CWE-502
 Deserialization of Untrusted Data
CVE-2020-36183 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm
209196 8.1 HIGH
Network
fasterxml
netapp
debian
oracle
jackson-databind
cloud_backup
service_level_manager
debian_linux
webcenter_portal
primavera_unifier
application_testing_suite
agile_plm
communications_policy_management
com…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS. CWE-502
 Deserialization of Untrusted Data
CVE-2020-36182 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm
209197 8.1 HIGH
Network
netapp
debian
oracle
fasterxml
cloud_backup
service_level_manager
debian_linux
webcenter_portal
primavera_unifier
application_testing_suite
agile_plm
communications_policy_management
communications_billing_…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS. CWE-502
 Deserialization of Untrusted Data
CVE-2020-36180 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm
209198 8.1 HIGH
Network
netapp
debian
oracle
fasterxml
cloud_backup
service_level_manager
debian_linux
webcenter_portal
application_testing_suite
primavera_unifier
agile_plm
communications_policy_management
communications_billing_…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS. CWE-502
 Deserialization of Untrusted Data
CVE-2020-36179 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm
209199 8.1 HIGH
Network
fasterxml
netapp
debian
oracle
jackson-databind
cloud_backup
service_level_manager
debian_linux
webcenter_portal
application_testing_suite
banking_platform
primavera_unifier
agile_plm
communications_bill…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSo… CWE-502
 Deserialization of Untrusted Data
CVE-2020-36189 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm
209200 8.1 HIGH
Network
fasterxml
netapp
debian
oracle
jackson-databind
cloud_backup
service_level_manager
debian_linux
webcenter_portal
primavera_unifier
application_testing_suite
agile_plm
communications_policy_management
com…
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource. CWE-502
 Deserialization of Untrusted Data
CVE-2020-36188 2024-11-21 14:28 2021-01-7 Show GitHub Exploit DB Packet Storm