Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250081 4.3 警告 Apache Software Foundation - Apache HttpComponents の Apache HttpClinet における重要情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-1498 2012-03-27 18:43 2011-07-7 Show GitHub Exploit DB Packet Storm
250082 4.6 警告 nicholas marriott - tmux における utmp グループ権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1496 2012-03-27 18:43 2011-04-18 Show GitHub Exploit DB Packet Storm
250083 5.5 警告 Roundcube.net - Roundcube Webmail の steps/utils/modcss.inc における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-1492 2012-03-27 18:43 2011-04-8 Show GitHub Exploit DB Packet Storm
250084 3.5 注意 Roundcube.net - Roundcube Webmail のログインフォームにおける重要な情報を取得されるの脆弱性 CWE-20
不適切な入力確認
CVE-2011-1491 2012-03-27 18:43 2011-04-8 Show GitHub Exploit DB Packet Storm
250085 6.8 警告 レッドハット - Red Hat JBoss Enterprise SOA Platform および JBoss Enterprise Application Platform の JBoss Seam 2 framework の jboss-seam.jar における任意の Java コード実行を引き起こす脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1484 2012-03-27 18:43 2011-04-20 Show GitHub Exploit DB Packet Storm
250086 6.8 警告 PHPNUKE - Francisco Burzi PHP-Nuke の mainfile.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-1482 2012-03-27 18:43 2011-06-20 Show GitHub Exploit DB Packet Storm
250087 4.3 警告 PHPNUKE - Francisco Burzi PHP-Nuke におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1481 2012-03-27 18:43 2011-06-20 Show GitHub Exploit DB Packet Storm
250088 3.5 注意 Liferay - Liferay Portal CE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1504 2012-03-27 18:43 2010-07-22 Show GitHub Exploit DB Packet Storm
250089 3.5 注意 Liferay
Apache Software Foundation
オラクル
- Liferay Portal CE の XSL Content portlet における任意の XSL および XML ファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-1503 2012-03-27 18:43 2010-11-9 Show GitHub Exploit DB Packet Storm
250090 7.5 危険 PHPNUKE - Francisco Burzi PHP-Nuke の admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-1480 2012-03-27 18:43 2011-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209691 8.8 HIGH
Network
maccms maccms A Cross-Site Request Forgery (CSRF) in the component admin.php/admin/type/info.html of Maccms 10 allows attackers to gain administrator privileges. CWE-352
 Origin Validation Error
CVE-2020-21386 2024-11-21 14:12 2021-10-5 Show GitHub Exploit DB Packet Storm
209692 6.1 MEDIUM
Network
jizhicms jizhicms JIZHICMS 1.5.1 contains a cross-site scripting (XSS) vulnerability in the component /user/release.html, which allows attackers to arbitrarily add an administrator cookie. CWE-79
Cross-site Scripting
CVE-2020-21228 2024-11-21 14:12 2021-10-2 Show GitHub Exploit DB Packet Storm
209693 6.5 MEDIUM
Network
emlog emlog emlog v6.0.0 contains an arbitrary file deletion vulnerability in admin/plugin.php. NVD-CWE-noinfo
CVE-2020-21014 2024-11-21 14:12 2021-10-2 Show GitHub Exploit DB Packet Storm
209694 7.2 HIGH
Network
emlog emlog emlog v6.0.0 contains a SQL injection via /admin/comment.php. CWE-89
SQL Injection
CVE-2020-21013 2024-11-21 14:12 2021-10-2 Show GitHub Exploit DB Packet Storm
209695 9.8 CRITICAL
Network
hotel_and_lodge_booking_management_system_project hotel_and_lodge_booking_management_system Sourcecodester Hotel and Lodge Management System 2.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the email parameter to the edi… CWE-89
SQL Injection
CVE-2020-21012 2024-11-21 14:12 2021-10-2 Show GitHub Exploit DB Packet Storm
209696 5.4 MEDIUM
Network
jeecms jeecms JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter. CWE-79
Cross-site Scripting
CVE-2020-20799 2024-11-21 14:12 2021-10-1 Show GitHub Exploit DB Packet Storm
209697 9.8 CRITICAL
Network
flamecms_project flamecms FlameCMS 3.3.5 contains a time-based blind SQL injection vulnerability in /account/register.php. CWE-89
SQL Injection
CVE-2020-20797 2024-11-21 14:12 2021-10-1 Show GitHub Exploit DB Packet Storm
209698 9.8 CRITICAL
Network
flamecms_project flamecms FlameCMS 3.3.5 contains a SQL injection vulnerability in /master/article.php via the "Id" parameter. CWE-89
SQL Injection
CVE-2020-20796 2024-11-21 14:12 2021-10-1 Show GitHub Exploit DB Packet Storm
209699 7.2 HIGH
Network
tendacn ac9_firmware A stack-based buffer overflow in the httpd server on Tenda AC9 V15.03.06.60_EN allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via a crafted POST request to /gofo… CWE-787
 Out-of-bounds Write
CVE-2020-20746 2024-11-21 14:12 2021-10-1 Show GitHub Exploit DB Packet Storm
209700 7.5 HIGH
Network
rudp_project rudp rudp v0.6 was discovered to contain a memory leak in the component main.c. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-20665 2024-11-21 14:12 2021-10-1 Show GitHub Exploit DB Packet Storm