Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252991 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-4002 2010-02-16 11:44 2010-01-19 Show GitHub Exploit DB Packet Storm
252992 6.9 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel における競合状態の脆弱性 CWE-362
競合状態
CVE-2009-3547 2010-02-16 11:44 2009-11-3 Show GitHub Exploit DB Packet Storm
252993 4.9 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の netlink サブシステムにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2005-4881 2010-02-16 11:43 2009-10-19 Show GitHub Exploit DB Packet Storm
252994 4.7 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の execve 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-2848 2010-02-16 11:43 2009-08-18 Show GitHub Exploit DB Packet Storm
252995 4.9 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の do_sigaltstack 関数における情報漏えいの脆弱性 CWE-noinfo
情報不足
CVE-2009-2847 2010-02-16 11:43 2009-08-18 Show GitHub Exploit DB Packet Storm
252996 7.2 危険 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の personality サブシステムにおける NULL ポインタ参照の脆弱性 CWE-16
環境設定
CVE-2009-1895 2010-02-16 11:43 2009-07-16 Show GitHub Exploit DB Packet Storm
252997 4.3 警告 オラクル - BEA Product Suite の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0069 2010-02-15 19:32 2010-01-12 Show GitHub Exploit DB Packet Storm
252998 5 警告 オラクル - BEA Product Suite の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0078 2010-02-15 19:32 2010-01-12 Show GitHub Exploit DB Packet Storm
252999 5 警告 オラクル - BEA Product Suite の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0074 2010-02-15 19:32 2010-01-12 Show GitHub Exploit DB Packet Storm
253000 5 警告 オラクル - BEA Product Suite の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0068 2010-02-15 19:32 2010-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 28, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199701 5.9 MEDIUM
Network
siemens scalance_xr324-12m_firmware
scalance_xr324-12m_ts_firmware
scalance_xr324-4m_eec_firmware
scalance_xr324-4m_poe_firmware
scalance_xr324-4m_poe_ts_firmware
scalance_xr324wg_firmware
A vulnerability has been identified in SCALANCE X-200RNA switch family (All versions < V3.2.7), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) (All versions < V4.1.0). Devices do n… - CVE-2020-28395 2024-11-21 14:22 2021-01-13 Show GitHub Exploit DB Packet Storm
199702 5.9 MEDIUM
Network
siemens scalance_x200-4pirt_firmware
scalance_x201-3pirt_firmware
scalance_x202-2irt_firmware
scalance_x202-2pirt_firmware
scalance_x202-2pirt_siplus_net_firmware
scalance_x204irt_firmware
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5… - CVE-2020-28391 2024-11-21 14:22 2021-01-13 Show GitHub Exploit DB Packet Storm
199703 7.8 HIGH
Local
siemens jt2go
teamcenter_visualization
solid_edge
A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Solid Edge SE2020 (All Versions < SE2020MP12), Solid Edge SE2021 (All Versions < SE2021MP2), Teamcenter Visualization (All ver… - CVE-2020-28383 2024-11-21 14:22 2021-01-13 Show GitHub Exploit DB Packet Storm
199704 5.3 MEDIUM
Network
rocket.chat rocket.chat An email address enumeration vulnerability exists in the password reset function of Rocket.Chat through 3.9.1. CWE-203
 Information Exposure Through Discrepancy
CVE-2020-28208 2024-11-21 14:22 2021-01-9 Show GitHub Exploit DB Packet Storm
199705 9.8 CRITICAL
Network
pwntools_project pwntools This affects the package pwntools before 4.3.1. The shellcraft generator for affected versions of this module are vulnerable to Server-Side Template Injection (SSTI), which can lead to remote code ex… CWE-74
Injection
CVE-2020-28468 2024-11-21 14:22 2021-01-8 Show GitHub Exploit DB Packet Storm
199706 9.8 CRITICAL
Network
djv_project djv This affects the package djv before 2.1.4. By controlling the schema file, an attacker can run arbitrary JavaScript code on the victim machine. CWE-94
Code Injection
CVE-2020-28464 2024-11-21 14:22 2021-01-4 Show GitHub Exploit DB Packet Storm
199707 6.5 MEDIUM
Network
mantisbt mantisbt In MantisBT 2.24.3, SQL Injection can occur in the parameter "access" of the mc_project_get_users function through the API SOAP. CWE-89
SQL Injection
CVE-2020-28413 2024-11-21 14:22 2020-12-31 Show GitHub Exploit DB Packet Storm
199708 7.5 HIGH
Network
tenda ac1200_firmware On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and enter an infinite boot loop. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-28095 2024-11-21 14:22 2020-12-31 Show GitHub Exploit DB Packet Storm
199709 6.1 MEDIUM
Network
sapplica sentrifugo Sentrifugo 3.2 allows Stored Cross-Site Scripting (XSS) vulnerability by inserting a payload within the X-Forwarded-For HTTP header during the login process. When an administrator looks at logs, the … CWE-79
Cross-site Scripting
CVE-2020-28365 2024-11-21 14:22 2020-12-31 Show GitHub Exploit DB Packet Storm
199710 9.8 CRITICAL
Network
libnested_project libnested Prototype pollution vulnerability in 'libnested' versions 0.0.0 through 1.5.0 allows an attacker to cause a denial of service and may lead to remote code execution. NVD-CWE-Other
CVE-2020-28283 2024-11-21 14:22 2020-12-30 Show GitHub Exploit DB Packet Storm