Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253351 6.8 警告 アップル - Apple Mac OS X の CoreMedia および QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0062 2010-04-13 15:17 2010-03-29 Show GitHub Exploit DB Packet Storm
253352 6.8 警告 アップル - Apple Mac OS X の CoreAudio における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0060 2010-04-13 15:16 2010-03-29 Show GitHub Exploit DB Packet Storm
253353 6.8 警告 アップル - Apple Mac OS X の CoreAudio における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0059 2010-04-13 15:16 2010-03-29 Show GitHub Exploit DB Packet Storm
253354 6.4 警告 アップル - Apple Mac OS X の ClamAV におけるシステムにウィルスを取り込む脆弱性 CWE-16
環境設定
CVE-2010-0058 2010-04-13 15:16 2010-03-29 Show GitHub Exploit DB Packet Storm
253355 7.5 危険 アップル - Apple Mac OS X の AFP サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0533 2010-04-13 15:16 2010-03-29 Show GitHub Exploit DB Packet Storm
253356 7.5 危険 アップル - Apple Mac OS X の AFP サーバにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0057 2010-04-13 15:16 2010-03-29 Show GitHub Exploit DB Packet Storm
253357 6.4 警告 アップル - Apple Mac OS X のアプリケーションファイアウォールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2801 2010-04-13 15:15 2010-03-29 Show GitHub Exploit DB Packet Storm
253358 6.8 警告 アップル - Apple Mac OS X の Cocoa のスペルチェック機能におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0056 2010-04-13 15:15 2010-03-29 Show GitHub Exploit DB Packet Storm
253359 4.4 警告 アップル
サイバートラスト株式会社
Carnegie Mellon University (Project Cyrus)
レッドハット
- Cyrus IMAPd にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2632 2010-04-13 14:46 2009-09-10 Show GitHub Exploit DB Packet Storm
253360 7.5 危険 Haxx
アップル
サイバートラスト株式会社
レッドハット
- cURL および libcurl における、任意の SSL サーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2009-2417 2010-04-13 14:46 2009-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199861 7.8 HIGH
Local
php
debian
fedoraproject
drupal
archive_tar
debian_linux
fedora
drupal
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked. CWE-502
 Deserialization of Untrusted Data
CVE-2020-28948 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
199862 5.5 MEDIUM
Local
linux
fedoraproject
debian
linux_kernel
fedora
debian_linux
An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linux kernel through 5.9.9. Local attackers on systems with the speakup driver could cause a local denial of service attack… CWE-763
 Release of Invalid Pointer or Reference
CVE-2020-28941 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
199863 6.1 MEDIUM
Network
misp misp In MISP 2.4.134, XSS exists in the template element index view because the id parameter is mishandled. CWE-79
Cross-site Scripting
CVE-2020-28947 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
199864 4.3 MEDIUM
Network
primekey ejbca An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol. As a part of EJBCA's domain security model, the peer connector allows the r… CWE-295
Improper Certificate Validation 
CVE-2020-28942 2024-11-21 14:23 2020-11-20 Show GitHub Exploit DB Packet Storm
199865 6.1 MEDIUM
Network
palletsprojects werkzeug Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL. CWE-601
Open Redirect
CVE-2020-28724 2024-11-21 14:23 2020-11-19 Show GitHub Exploit DB Packet Storm
199866 6.5 MEDIUM
Network
view_frontend_statistics_project view_frontend_statistics An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves all GET and POST data of TYPO3 frontend requests to the database. Depending on… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-28917 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
199867 5.8 MEDIUM
Physics
linux linux_kernel A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def. CWE-125
Out-of-bounds Read
CVE-2020-28915 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
199868 7.1 HIGH
Local
katacontainers kata-containers An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the f… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-28914 2024-11-21 14:23 2020-11-18 Show GitHub Exploit DB Packet Storm
199869 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28688 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm
199870 8.8 HIGH
Network
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql_project
artworks_gallery_in_php\
_css\
_javascript\
_and_mysql
The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28687 2024-11-21 14:23 2020-11-17 Show GitHub Exploit DB Packet Storm