Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249321 5 警告 mark pilgrim - Universal Feed Parser におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2921 2012-05-23 18:50 2012-05-2 Show GitHub Exploit DB Packet Storm
249322 4.3 警告 Weston Ruter - WordPress 用 User Photo プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2920 2012-05-23 18:48 2012-05-21 Show GitHub Exploit DB Packet Storm
249323 4.3 警告 Andrew Killen - WordPress 用 Share and Follow プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2917 2012-05-23 18:47 2012-05-21 Show GitHub Exploit DB Packet Storm
249324 4.3 警告 dlo - WordPress 用 Sabre プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2916 2012-05-23 18:46 2012-05-21 Show GitHub Exploit DB Packet Storm
249325 4.3 警告 Hind - WordPress 用 Leaflet プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2913 2012-05-23 18:41 2012-05-21 Show GitHub Exploit DB Packet Storm
249326 4.3 警告 Kolja Schleich - WordPress 用 LeagueManager プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2912 2012-05-23 18:25 2012-05-21 Show GitHub Exploit DB Packet Storm
249327 5 警告 Chevereto Software - Chevereto の Upload/engine.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2919 2012-05-23 18:19 2012-05-21 Show GitHub Exploit DB Packet Storm
249328 4.3 警告 Chevereto Software - Chevereto の Upload/engine.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2918 2012-05-23 18:18 2012-05-21 Show GitHub Exploit DB Packet Storm
249329 7.5 危険 Johan Cwiklinski - Galette の includes/picture.class.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2338 2012-05-23 18:16 2012-05-21 Show GitHub Exploit DB Packet Storm
249330 10 危険 DMSoft Technologies - SkinCrafter の InitLicenKeys 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2271 2012-05-23 18:15 2012-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213971 6.5 MEDIUM
Network
cmsuno_project cmsuno An issue was discovered in CMSUno before 1.6.1. uno.php allows CSRF to change the admin password. CWE-352
 Origin Validation Error
CVE-2020-15600 2024-11-21 14:05 2020-07-8 Show GitHub Exploit DB Packet Storm
213972 6.1 MEDIUM
Network
victor_cms_project victor_cms Victor CMS through 2019-02-28 allows XSS via the register.php user_firstname or user_lastname field. CWE-79
Cross-site Scripting
CVE-2020-15599 2024-11-21 14:05 2020-07-8 Show GitHub Exploit DB Packet Storm
213973 9.8 CRITICAL
Network
riot-os riot RIOT 2020.04 has a buffer overflow in the base64 decoder. The decoding function base64_decode() uses an output buffer estimation function to compute the required buffer capacity and validate against … CWE-119
CWE-131
Incorrect Access of Indexable Resource ('Range Error') 
Incorrect Calculation of Buffer Size
CVE-2020-15350 2024-11-21 14:05 2020-07-8 Show GitHub Exploit DB Packet Storm
213974 8.8 HIGH
Network
turn\!_project turn\! The turn extension through 0.3.2 for TYPO3 allows Remote Code Execution. NVD-CWE-noinfo
CVE-2020-15515 2024-11-21 14:05 2020-07-8 Show GitHub Exploit DB Packet Storm
213975 5.5 MEDIUM
Local
google android An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles … CWE-119
CWE-20
Incorrect Access of Indexable Resource ('Range Error') 
 Improper Input Validation 
CVE-2020-15584 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm
213976 5.5 MEDIUM
Local
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows directory traversal for access to system files. The Samsung ID is SVE-2020-17665 (J… CWE-22
Path Traversal
CVE-2020-15583 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm
213977 5.5 MEDIUM
Local
google android An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth Low Energy (BLE) component has a buffer overflow with a resultant deadlock or … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-15582 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm
213978 5.3 MEDIUM
Network
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The kernel logging feature allows attackers to discover virtual addresses via vectors involving shared mem… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-15581 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm
213979 5.5 MEDIUM
Local
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) by enrolling a new lock password. The Samsung ID is SV… NVD-CWE-noinfo
CVE-2020-15580 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm
213980 7.5 HIGH
Network
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via the KNOX API. The Samsung ID is SVE-2020-17318 (Ju… NVD-CWE-noinfo
CVE-2020-15579 2024-11-21 14:05 2020-07-7 Show GitHub Exploit DB Packet Storm