Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252341 3.5 注意 バラクーダネットワークス - 複数の Barracuda 製品の index.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0971 2011-06-6 14:21 2008-12-15 Show GitHub Exploit DB Packet Storm
252342 4.3 警告 バラクーダネットワークス - Barracuda Spam Firewall の ldap_test.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2333 2011-06-6 14:20 2008-05-22 Show GitHub Exploit DB Packet Storm
252343 10 危険 7-Technologies - 7-Technologies Interactive Graphical SCADA System の logText 関数における任意のコードを実行される脆弱性 CWE-134
書式文字列の問題
CVE-2011-1568 2011-06-6 14:19 2011-04-5 Show GitHub Exploit DB Packet Storm
252344 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-0075 2011-06-6 13:56 2011-04-28 Show GitHub Exploit DB Packet Storm
252345 5 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Windows 上で稼働する複数の Mozilla 製品におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-0071 2011-06-6 10:36 2011-04-28 Show GitHub Exploit DB Packet Storm
252346 5 警告 サイバートラスト株式会社
Mozilla Foundation
- Mozilla Firefox および SeaMonkey におけるフォームの入力履歴を読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2011-0067 2011-06-6 10:35 2011-04-28 Show GitHub Exploit DB Packet Storm
252347 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-0073 2011-06-6 10:34 2011-04-28 Show GitHub Exploit DB Packet Storm
252348 9.3 危険 サン・マイクロシステムズ
The GIMP Team
レッドハット
- GIMP の ReadImage 関数における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2009-1570 2011-06-6 10:20 2009-11-13 Show GitHub Exploit DB Packet Storm
252349 2.1 注意 Skype Technologies S.A. - Skype for Android における個人情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1717 2011-06-3 10:25 2011-04-18 Show GitHub Exploit DB Packet Storm
252350 7.2 危険 Google - Android におけるアプリケーションサンドボックスを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1149 2011-06-3 10:24 2011-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201221 9.1 CRITICAL
Network
actix actix-utils An issue was discovered in the actix-utils crate before 2.0.0 for Rust. The Cell implementation allows obtaining more than one mutable reference to the same data. CWE-416
 Use After Free
CVE-2020-35898 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
201222 9.8 CRITICAL
Network
hgiga msr45_isherlock-user
ssr45_isherlock-user
HGiga MailSherlock does not validate specific parameters properly. Attackers can use the vulnerability to launch Command inject attacks remotely and execute arbitrary commands of the system. CWE-78
OS Command 
CVE-2020-35851 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
201223 7.5 HIGH
Network
mantisbt mantisbt An issue was discovered in MantisBT before 2.24.4. An incorrect access check in bug_revision_view_page.php allows an unprivileged attacker to view the Summary field of private issues, as well as bugn… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-35849 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
201224 6.5 MEDIUM
Network
cockpit-project cockpit An SSRF issue was discovered in cockpit-project.org Cockpit 234. NOTE: this is unrelated to the Agentejo Cockpit product. NOTE: the vendor states "I don't think [it] is a big real-life issue. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-35850 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201225 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php newpassword function. CWE-89
SQL Injection
CVE-2020-35848 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201226 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function. CWE-89
SQL Injection
CVE-2020-35847 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201227 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php check function. CWE-89
SQL Injection
CVE-2020-35846 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201228 5.4 MEDIUM
Network
netgear d6200_firmware
d7000_firmware
jnr1010v2_firmware
jr6150_firmware
jwnr2010v5_firmware
r6020_firmware
r6050_firmware
r6080_firmware
r6120_firmware
r6220_firmware
r6260_fir…
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1.1.0.62, JR6150 before 1.0.1.24, JWNR2010v5 before 1.1.0.62, R6020 be… CWE-79
Cross-site Scripting
CVE-2020-35842 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201229 7.6 HIGH
Network
netgear d6200_firmware
d7000_firmware
jnr1010v2_firmware
jr6150_firmware
jwnr2010v5_firmware
r6020_firmware
r6050_firmware
r6080_firmware
r6120_firmware
r6220_firmware
r6260_fir…
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1.1.0.62, JR6150 before 1.0.1.24, JWNR2010v5 before 1.1.0.62, R6020 be… CWE-79
Cross-site Scripting
CVE-2020-35841 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
201230 5.4 MEDIUM
Network
netgear d6200_firmware
d7000_firmware
jnr1010v2_firmware
jr6150_firmware
jwnr2010v5_firmware
r6020_firmware
r6050_firmware
r6080_firmware
r6120_firmware
r6220_firmware
r6260_fir…
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1.1.0.62, JR6150 before 1.0.1.24, JWNR2010v5 before 1.1.0.62, R6020 be… CWE-79
Cross-site Scripting
CVE-2020-35840 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm