Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251471 5.8 警告 Laurent Destailleur - AWStats におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2009-5020 2012-03-27 18:42 2010-12-2 Show GitHub Exploit DB Packet Storm
251472 5 警告 webwiz - Web Wiz NewsPad におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-5019 2012-03-27 18:42 2010-12-1 Show GitHub Exploit DB Packet Storm
251473 4.3 警告 mark pilgrim - Universal Feed Parser の feedparser.py におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-5065 2012-03-27 18:42 2009-11-18 Show GitHub Exploit DB Packet Storm
251474 6.8 警告 レッドハット - Red Hat Network Satellite およびその他の製品の Spacewalk におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4139 2012-03-27 18:42 2011-06-16 Show GitHub Exploit DB Packet Storm
251475 5 警告 Stichting NLnet Labs - Unbound におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-4008 2012-03-27 18:42 2011-06-2 Show GitHub Exploit DB Packet Storm
251476 6.4 警告 レッドハット - RHN Satellite Server における不適切なプロキシとして利用される脆弱性 CWE-200
情報漏えい
CVE-2009-0788 2012-03-27 18:42 2011-04-11 Show GitHub Exploit DB Packet Storm
251477 4.3 警告 Mozilla Foundation - Mozilla Firefox におけるクロスサイトスクリプティングの保護機能を回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-5017 2012-03-27 18:42 2010-11-12 Show GitHub Exploit DB Packet Storm
251478 7.5 危険 turbogears - TurboGears2 の URL ディスパッチメカニズムにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-5015 2012-03-27 18:42 2010-11-5 Show GitHub Exploit DB Packet Storm
251479 7.5 危険 turbogears - TurboGears2 のデフォルトのクイックスタートの設定における repoze.who 認証を回避される脆弱性 CWE-310
暗号の問題
CVE-2009-5014 2012-03-27 18:42 2010-11-5 Show GitHub Exploit DB Packet Storm
251480 5 警告 infradead - OpenConnect におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-5009 2012-03-27 18:42 2010-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202311 4.8 MEDIUM
Network
f5
netapp
nginx_controller
cloud_backup
In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via … CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-5865 2024-11-21 14:34 2020-04-24 Show GitHub Exploit DB Packet Storm
202312 7.4 HIGH
Network
f5 nginx_controller In versions of NGINX Controller prior to 3.2.0, communication between NGINX Controller and NGINX Plus instances skip TLS verification by default. CWE-295
Improper Certificate Validation 
CVE-2020-5864 2024-11-21 14:34 2020-04-24 Show GitHub Exploit DB Packet Storm
202313 7.5 HIGH
Network
sharp aquos_sh-m02_firmware
aquos_sh-rm02_firmware
aquos_mini_sh-m03_firmware
aquos_l2_firmware
aquos_sense_lite_sh-m05_firmware
aquos_sense_firmware
aquos_compact_sh-m06_firmware
aquo…
SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 01.00.04 and earlier, AQUOS Keitai SH-N01 build num… CWE-200
Information Exposure
CVE-2020-5571 2024-11-21 14:34 2020-04-23 Show GitHub Exploit DB Packet Storm
202314 7.8 HIGH
Local
plex media_server Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges. CWE-427
 Uncontrolled Search Path Element
CVE-2020-5740 2024-11-21 14:34 2020-04-23 Show GitHub Exploit DB Packet Storm
202315 8.4 HIGH
Local
toshiba password_tool_for_windows An unquoted search path vulnerability exists in HDD Password tool (for Windows) version 1.20.6620 and earlier which is stored in CANVIO PREMIUM 3TB(HD-MB30TY, HD-MA30TY, HD-MB30TS, HD-MA30TS), CANVIO… CWE-428
 Unquoted Search Path or Element
CVE-2020-5569 2024-11-21 14:34 2020-04-20 Show GitHub Exploit DB Packet Storm
202316 5.4 MEDIUM
Network
tenable tenable.sc Stored XSS in Tenable.Sc before 5.14.0 could allow an authenticated remote attacker to craft a request to execute arbitrary script code in a user's browser session. Updated input validation technique… CWE-79
Cross-site Scripting
CVE-2020-5737 2024-11-21 14:34 2020-04-18 Show GitHub Exploit DB Packet Storm
202317 6.1 MEDIUM
Network
openmrs openmrs In OpenMRS 2.9 and prior, the export functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows the export of… CWE-601
Open Redirect
CVE-2020-5733 2024-11-21 14:34 2020-04-18 Show GitHub Exploit DB Packet Storm
202318 6.1 MEDIUM
Network
openmrs openmrs In OpenMRS 2.9 and prior, he import functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows unauthenticate… CWE-601
Open Redirect
CVE-2020-5732 2024-11-21 14:34 2020-04-18 Show GitHub Exploit DB Packet Storm
202319 6.1 MEDIUM
Network
openmrs openmrs In OpenMRS 2.9 and prior, the app parameter for the ActiveVisit's page is vulnerable to cross-site scripting. CWE-79
Cross-site Scripting
CVE-2020-5731 2024-11-21 14:34 2020-04-18 Show GitHub Exploit DB Packet Storm
202320 6.1 MEDIUM
Network
openmrs openmrs In OpenMRS 2.9 and prior, the sessionLocation parameter for the login page is vulnerable to cross-site scripting. CWE-79
Cross-site Scripting
CVE-2020-5730 2024-11-21 14:34 2020-04-18 Show GitHub Exploit DB Packet Storm