Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252861 6 警告 アップル - Apple Mac OS X の AFP Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1829 2010-11-25 15:17 2010-11-15 Show GitHub Exploit DB Packet Storm
252862 5 警告 アップル - Apple Mac OS X の AFP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1828 2010-11-25 15:17 2010-11-15 Show GitHub Exploit DB Packet Storm
252863 4.3 警告 アップル - Apple Mac OS X の Time Machine における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2010-1803 2010-11-25 15:16 2010-11-15 Show GitHub Exploit DB Packet Storm
252864 7.5 危険 アップル - Apple Mac OS X の OpenSSL における X.509 証明書の認証を回避される脆弱性 CWE-310
暗号の問題
CVE-2010-1378 2010-11-25 15:15 2010-11-12 Show GitHub Exploit DB Packet Storm
252865 4.9 警告 アップル - Apple Mac OS X の hfs 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-0105 2010-11-25 15:15 2010-04-27 Show GitHub Exploit DB Packet Storm
252866 9.3 危険 アップル
アドビシステムズ
レッドハット
- Adobe Flash の ActionScript の処理に脆弱性 CWE-94
コード・インジェクション
CVE-2010-0209 2010-11-25 15:14 2010-08-11 Show GitHub Exploit DB Packet Storm
252867 9.3 危険 アップル
アドビシステムズ
ターボリナックス
レッドハット
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-399
CWE-noinfo
CVE-2009-3793 2010-11-25 15:13 2010-06-10 Show GitHub Exploit DB Packet Storm
252868 6.8 警告 アップル
GNU Project
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU gzip における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2010-0001 2010-11-25 15:12 2010-01-29 Show GitHub Exploit DB Packet Storm
252869 2.6 注意 アップル
サン・マイクロシステムズ
Apache Software Foundation
- Apache HTTP Server 用 mod_perl の Status.pm におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0796 2010-11-25 15:12 2009-04-7 Show GitHub Exploit DB Packet Storm
252870 6.8 警告 アップル
サイバートラスト株式会社
WebDAV
レッドハット
- neon における X.509 証明書の処理に関する任意の SSL サーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2009-2474 2010-11-25 15:11 2009-08-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209861 6.5 MEDIUM
Network
mozilla
opensuse
firefox
leap
When constructing a permission prompt for WebRTC, a URI was supplied from the content process. This URI was untrusted, and could have been the URI of an origin that was previously granted permission;… CWE-276
Incorrect Default Permissions 
CVE-2020-12424 2024-11-21 13:59 2020-07-9 Show GitHub Exploit DB Packet Storm
209862 7.5 HIGH
Network
apache
oracle
camel
enterprise_repository
enterprise_manager_base_platform
communications_diameter_signaling_router
Server-Side Template Injection and arbitrary file disclosure on Camel templating components CWE-74
Injection
CVE-2020-11994 2024-11-21 13:59 2020-07-9 Show GitHub Exploit DB Packet Storm
209863 8.1 HIGH
Network
ledger ledger_live Ledger Live before 2.7.0 does not handle Bitcoin's Replace-By-Fee (RBF). It increases the user's balance with the value of an unconfirmed transaction as soon as it is received (before the transaction… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-12119 2024-11-21 13:59 2020-07-3 Show GitHub Exploit DB Packet Storm
209864 7.8 HIGH
Local
phoenixcontact pc_worx
pc_worx_express
mwe file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier is vulnerable to out-of-bounds read remote code execution. Manipulated PC Worx projects could lead to a remote… CWE-125
Out-of-bounds Read
CVE-2020-12498 2024-11-21 13:59 2020-07-2 Show GitHub Exploit DB Packet Storm
209865 7.8 HIGH
Local
phoenixcontact pc_worx
pc_worx_express
PLCopen XML file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier can lead to a stack-based overflow. Manipulated PC Worx projects could lead to a remote code execution… CWE-787
 Out-of-bounds Write
CVE-2020-12497 2024-11-21 13:59 2020-07-2 Show GitHub Exploit DB Packet Storm
209866 7.5 HIGH
Network
envoyproxy envoy Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier may consume excessive amounts of memory when processing HTTP/1.1 headers with long field names or requests with long URLs. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-12605 2024-11-21 13:59 2020-07-2 Show GitHub Exploit DB Packet Storm
209867 7.5 HIGH
Network
envoyproxy envoy Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier is susceptible to increased memory usage in the case where an HTTP/2 client requests a large payload but does not send enough window updates to consume… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-12604 2024-11-21 13:59 2020-07-2 Show GitHub Exploit DB Packet Storm
209868 7.5 HIGH
Network
envoyproxy envoy Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier may consume excessive amounts of memory when proxying HTTP/2 requests or responses with many small (i.e. 1 byte) data frames. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-12603 2024-11-21 13:59 2020-07-1 Show GitHub Exploit DB Packet Storm
209869 6.1 MEDIUM
Network
mageme webforms_pro_m2 XSS exists in the WebForms Pro M2 extension before 2.9.17 for Magento 2 via the textarea field. CWE-79
Cross-site Scripting
CVE-2020-12635 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
209870 7.5 HIGH
Network
baxter phoenix_x36_firmware Phoenix Hemodialysis Delivery System SW 3.36 and 3.40, The Phoenix Hemodialysis device does not support data-in-transit encryption (e.g., TLS/SSL) when transmitting treatment and prescription data on… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12048 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm