Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249951 10 危険 アドビシステムズ - Adobe Photoshop における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2011-2164 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249952 9.3 危険 IBM - IBM Systems Director の Virtualization Manager における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2011-2163 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249953 10 危険 FFmpeg
Mandriva, Inc.
mplayerhq
- MPlayer などの製品で使用される Ffmpeg における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2011-2162 2012-03-27 18:43 2011-05-16 Show GitHub Exploit DB Packet Storm
249954 4.3 警告 VideoLAN
FFmpeg
mplayerhq
- MPlayer などの製品で使用される FFmpeg の ape_read_header 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2161 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249955 9.3 危険 FFmpeg
mplayerhq
- MPlayer などの製品で使用される FFmpeg の VC-1 デコーディング機能における脆弱性 CWE-20
不適切な入力確認
CVE-2011-2160 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249956 10 危険 SmarterTools Inc. - SmarterTools SmarterStats Web サーバにおける脆弱性 CWE-DesignError
CVE-2011-2159 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249957 10 危険 SmarterTools Inc. - SmarterTools SmarterStats Web サーバにおける脆弱性 CWE-DesignError
CVE-2011-2158 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249958 5 警告 SmarterTools Inc. - SmarterTools SmarterStats Web サーバにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2157 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249959 5 警告 SmarterTools Inc. - SmarterTools SmarterStats Web サーバにおけるディレクトリ一覧を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-2156 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
249960 7.5 危険 SmarterTools Inc. - SmarterTools SmarterStats Web サーバの Login.aspx における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-2155 2012-03-27 18:43 2011-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209521 6.1 MEDIUM
Network
techkshetrainfo savsoft_quiz TechKshetra Info Solutions Pvt. Ltd Savsoft Quiz 5.5 and earlier has XSS which can result in an attacker injecting the XSS payload in the User Registration section and each time the admin visits the … CWE-79
Cross-site Scripting
CVE-2020-24609 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209522 8.8 HIGH
Network
fossil-scm
fedoraproject
opensuse
fossil
fedora
leap
backports_sle
Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.12.1 allows remote authenticated users to execute arbitrary code. An attacker must have check-in privileges on the repository. CWE-862
 Missing Authorization
CVE-2020-24614 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209523 8.1 HIGH
Network
fasterxml
netapp
oracle
debian
jackson-databind
active_iq_unified_manager
application_testing_suite
agile_plm
communications_policy_management
communications_diameter_signaling_router
communications_services_gate…
FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource (aka Anteros-DBCP). CWE-502
 Deserialization of Untrusted Data
CVE-2020-24616 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209524 6.8 MEDIUM
Network
wolfssl wolfssl wolfSSL before 4.5.0 mishandles TLS 1.3 server data in the WAIT_CERT_CR state, within SanityCheckTls13MsgReceived() in tls13.c. This is an incorrect implementation of the TLS 1.3 client state machine… CWE-295
Improper Certificate Validation 
CVE-2020-24613 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209525 8.8 HIGH
Network
raspap raspap An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS (… CWE-78
OS Command 
CVE-2020-24572 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209526 4.7 MEDIUM
Local
fedoraproject selinux-policy An issue was discovered in the selinux-policy (aka Reference Policy) package 3.14 through 2020-08-24 because the .config/Yubico directory is mishandled. Consequently, when SELinux is in enforced mode… CWE-287
Improper Authentication
CVE-2020-24612 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209527 7.5 HIGH
Network
squid-cache
canonical
debian
fedoraproject
opensuse
squid
ubuntu_linux
debian_linux
fedora
leap
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only o… CWE-667
 Improper Locking
CVE-2020-24606 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209528 6.5 MEDIUM
Network
wso2 identity_server_analytics
api_microgateway
api_manager
enterprise_integrator
api_manager_analytics
The Management Console in certain WSO2 products allows XXE attacks during EventReceiver updates. This affects API Manager through 3.0.0, API Manager Analytics 2.2.0 and 2.5.0, API Microgateway 2.2.0,… CWE-611
XXE
CVE-2020-24591 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209529 9.1 CRITICAL
Network
wso2 api_microgateway
api_manager
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks. CWE-776
XML Entity Expansion
CVE-2020-24590 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209530 9.1 CRITICAL
Network
wso2 api_microgateway
api_manager
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML External Entity injection (XXE) attacks. CWE-611
XXE
CVE-2020-24589 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm