Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249931 10 危険 Mozilla Foundation - 複数の Mozilla 製品におけるサービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2995 2012-04-16 15:58 2011-09-27 Show GitHub Exploit DB Packet Storm
249932 3.5 注意 Mozilla Foundation - 複数の Mozilla 製品におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2372 2012-04-16 15:57 2011-09-27 Show GitHub Exploit DB Packet Storm
249933 9.3 危険 アップル - Apple iOS の FreeType における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-3439 2012-04-16 15:55 2011-11-11 Show GitHub Exploit DB Packet Storm
249934 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2999 2012-04-16 15:52 2011-09-27 Show GitHub Exploit DB Packet Storm
249935 10 危険 Mozilla Foundation - Mozilla Firefox におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-189
数値処理の問題
CVE-2011-2998 2012-04-16 15:50 2011-09-27 Show GitHub Exploit DB Packet Storm
249936 4.3 警告 アップル - Apple iOS の CoreGraphics の FreeType における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-3256 2012-04-16 15:48 2011-10-14 Show GitHub Exploit DB Packet Storm
249937 9.3 危険 マイクロソフト - 複数の Microsoft 製品の Office Works ファイル コンバータにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0177 2012-04-16 13:45 2012-04-10 Show GitHub Exploit DB Packet Storm
249938 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 8 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0172 2012-04-16 13:44 2012-04-10 Show GitHub Exploit DB Packet Storm
249939 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0171 2012-04-16 13:43 2012-04-10 Show GitHub Exploit DB Packet Storm
249940 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0170 2012-04-16 13:43 2012-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209341 8.7 HIGH
Network
cisco iot_field_network_director A vulnerability in the SOAP API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to access and modify information on devices that belong to a different domain. … CWE-269
 Improper Privilege Management
CVE-2020-26072 2024-11-21 14:19 2020-11-19 Show GitHub Exploit DB Packet Storm
209342 6.5 MEDIUM
Network
cisco roomos
telepresence_collaboration_endpoint
A vulnerability in the xAPI service of Cisco Telepresence CE Software and Cisco RoomOS Software could allow an authenticated, remote attacker to generate an access token for an affected device. The v… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-26068 2024-11-21 14:19 2020-11-19 Show GitHub Exploit DB Packet Storm
209343 6.1 MEDIUM
Network
typo3 fluid TYPO3 Fluid before versions 2.0.8, 2.1.7, 2.2.4, 2.3.7, 2.4.4, 2.5.11 and 2.6.10 is vulnerable to Cross-Site Scripting. Three XSS vulnerabilities have been detected in Fluid: 1. TagBasedViewHelper al… - CVE-2020-26216 2024-11-21 14:19 2020-11-18 Show GitHub Exploit DB Packet Storm
209344 6.5 MEDIUM
Adjacent
genexis platinum_4410_firmware UPNP Service listening on port 5555 in Genexis Platinum 4410 Router V2.1 (P4410-V2–1.34H) has an action 'X_GetAccess' which leaks the credentials of 'admin', provided that the attacker is network adj… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-25988 2024-11-21 14:19 2020-11-18 Show GitHub Exploit DB Packet Storm
209345 7.1 HIGH
Network
gitlab gitlab Path traversal vulnerability in package upload functionality in GitLab CE/EE starting from 12.8 allows an attacker to save packages in arbitrary locations. Affected versions are >=12.8, <13.3.9,>=13.… CWE-22
Path Traversal
CVE-2020-26405 2024-11-21 14:19 2020-11-18 Show GitHub Exploit DB Packet Storm
209346 5.3 MEDIUM
Network
gitlab gitlab Certain SAST CiConfiguration information could be viewed by unauthorized users in GitLab EE starting with 13.3. This information was exposed through GraphQL to non-members of public projects with rep… NVD-CWE-noinfo
CVE-2020-26406 2024-11-21 14:19 2020-11-17 Show GitHub Exploit DB Packet Storm
209347 6.1 MEDIUM
Network
prestashop product_comments In PrestaShop Product Comments before version 4.2.0, an attacker could inject malicious web code into the users' web browsers by creating a malicious link. The problem was introduced in version 4.0.0… - CVE-2020-26225 2024-11-21 14:19 2020-11-17 Show GitHub Exploit DB Packet Storm
209348 7.5 HIGH
Network
prestashop prestashop In PrestaShop before version 1.7.6.9 an attacker is able to list all the orders placed on the website without being logged by abusing the function that allows a shopping cart to be recreated from an … NVD-CWE-noinfo
CVE-2020-26224 2024-11-21 14:19 2020-11-17 Show GitHub Exploit DB Packet Storm
209349 9.8 CRITICAL
Network
airleader airleader_master_control Airleader Master <= 6.21 devices have default credentials that can be used to access the exposed Tomcat Manager for deployment of a new .war file, with resultant remote code execution. CWE-1188
 Insecure Default Initialization of Resource
CVE-2020-26510 2024-11-21 14:19 2020-11-17 Show GitHub Exploit DB Packet Storm
209350 7.5 HIGH
Network
airleader airleader_master_control Airleader Master and Easy <= 6.21 devices have default credentials that can be used for a denial of service. CWE-798
 Use of Hard-coded Credentials
CVE-2020-26509 2024-11-21 14:19 2020-11-17 Show GitHub Exploit DB Packet Storm