Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250101 7.5 危険 Vtiger - vTiger CRM の Calendar モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4559 2011-11-30 16:22 2011-11-28 Show GitHub Exploit DB Packet Storm
250102 4.3 警告 Contao - Contao におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4335 2011-11-29 16:28 2011-11-28 Show GitHub Exploit DB Packet Storm
250103 4.3 警告 Dolibarr ERP & CRM - Dolibarr におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4329 2011-11-29 16:27 2011-11-8 Show GitHub Exploit DB Packet Storm
250104 4.3 警告 Ruby on Rails project - Ruby on Rails におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4319 2011-11-29 16:26 2011-11-28 Show GitHub Exploit DB Packet Storm
250105 4.3 警告 Combodo - Combodo iTop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4275 2011-11-29 16:23 2011-11-26 Show GitHub Exploit DB Packet Storm
250106 9.3 危険 SunPlus Electronics - DVR Remote ActiveX コントロールの DVRemoteAx.ax における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-3828 2011-11-29 16:22 2011-11-26 Show GitHub Exploit DB Packet Storm
250107 6.8 警告 IBM - IBM TS3100 および TS3200 テープ・ライブラリにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-1372 2011-11-29 16:15 2011-11-23 Show GitHub Exploit DB Packet Storm
250108 1.9 注意 ヒューレット・パッカード
IBM
- IBM WebSphere MQ における listener プロセス強制終了の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1378 2011-11-29 16:14 2011-11-26 Show GitHub Exploit DB Packet Storm
250109 5 警告 シスコシステムズ - Cisco Secure Access Control System における任意のユーザのパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-0951 2011-11-29 10:38 2011-03-30 Show GitHub Exploit DB Packet Storm
250110 5 警告 シスコシステムズ - Cisco Network Access Control Guest Server におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0963 2011-11-29 10:37 2011-03-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199421 9.8 CRITICAL
Network
arr_project arr An issue was discovered in the arr crate through 2020-08-25 for Rust. Uninitialized memory is dropped by Array::new_from_template. CWE-908
 Use of Uninitialized Resource
CVE-2020-35888 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199422 9.8 CRITICAL
Network
arr_project arr An issue was discovered in the arr crate through 2020-08-25 for Rust. There is a buffer overflow in Index and IndexMut. CWE-120
Classic Buffer Overflow
CVE-2020-35887 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199423 4.7 MEDIUM
Local
arr_project arr An issue was discovered in the arr crate through 2020-08-25 for Rust. An attacker can smuggle non-Sync/Send types across a thread boundary to cause a data race. CWE-362
Race Condition
CVE-2020-35886 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199424 9.8 CRITICAL
Network
alpm-rs_project alpm-rs An issue was discovered in the alpm-rs crate through 2020-08-20 for Rust. StrcCtx performs improper memory deallocation. CWE-415
 Double Free
CVE-2020-35885 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199425 6.5 MEDIUM
Network
tiny-http_project
fedoraproject
tiny-http
fedora
An issue was discovered in the tiny_http crate through 2020-06-16 for Rust. HTTP Request smuggling can occur via a malformed Transfer-Encoding header. CWE-444
HTTP Request Smuggling
CVE-2020-35884 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199426 9.1 CRITICAL
Network
mozwire_project mozwire An issue was discovered in the mozwire crate through 2020-08-18 for Rust. A ../ directory-traversal situation allows overwriting local files that have .conf at the end of the filename. CWE-22
Path Traversal
CVE-2020-35883 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199427 8.1 HIGH
Network
rocket rocket An issue was discovered in the rocket crate before 0.4.5 for Rust. LocalRequest::clone creates more than one mutable references to the same object, possibly causing a data race. CWE-362
Race Condition
CVE-2020-35882 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199428 9.8 CRITICAL
Network
traitobject_project traitobject An issue was discovered in the traitobject crate through 2020-06-01 for Rust. It has false expectations about fat pointers, possibly causing memory corruption in, for example, Rust 2.x. CWE-787
 Out-of-bounds Write
CVE-2020-35881 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199429 9.8 CRITICAL
Network
bigint_project bigint An issue was discovered in the bigint crate through 2020-05-07 for Rust. It allows a soundness violation. NVD-CWE-noinfo
CVE-2020-35880 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199430 9.8 CRITICAL
Network
rulinalg_project rulinalg An issue was discovered in the rulinalg crate through 2020-02-11 for Rust. There are incorrect lifetime-boundary definitions for RowMut::raw_slice and RowMut::raw_slice_mut. NVD-CWE-noinfo
CVE-2020-35879 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm