Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253541 9.3 危険 シスコシステムズ - Cisco WebEx WRF Player の atas32.dll におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2878 2011-06-17 11:23 2009-12-16 Show GitHub Exploit DB Packet Storm
253542 9.3 危険 シスコシステムズ - Cisco WebEx WRF Player の ataudio.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2877 2011-06-17 11:18 2009-12-16 Show GitHub Exploit DB Packet Storm
253543 6.3 警告 VMware - 複数の VMware 製品の HGFS におけるゲスト OS 上の任意のファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2145 2011-06-17 10:59 2011-06-2 Show GitHub Exploit DB Packet Storm
253544 6.9 警告 VMware - 複数の VMware 製品の HGFS におけるゲスト OS 上の権限を取得される脆弱性 CWE-362
競合状態
CVE-2011-1787 2011-06-17 10:58 2011-06-2 Show GitHub Exploit DB Packet Storm
253545 2.1 注意 VMware - 複数の Vmware 製品の HGFS におけるホスト OS 上のファイルなどの存在有無を特定される脆弱性 CWE-200
情報漏えい
CVE-2011-2146 2011-06-17 10:56 2011-06-2 Show GitHub Exploit DB Packet Storm
253546 4.3 警告 アドビシステムズ
レッドハット
- Adobe Flash Player におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2107 2011-06-17 10:54 2011-06-5 Show GitHub Exploit DB Packet Storm
253547 - - Rockwell Automation - RSLinx Classic EDS Hardware Installation Tool にバッファオーバーフローの脆弱性 - - 2011-06-17 10:51 2011-05-31 Show GitHub Exploit DB Packet Storm
253548 9.3 危険 ジャストシステム - 一太郎シリーズにおける任意のコードが実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-1331 2011-06-16 12:03 2011-06-16 Show GitHub Exploit DB Packet Storm
253549 6.5 警告 IBM - IBM DB2 における non-DDL ステートメントを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1846 2011-06-16 11:21 2011-04-26 Show GitHub Exploit DB Packet Storm
253550 9.3 危険 シスコシステムズ - Cisco WebEx WRF Player の atas32.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2875 2011-06-16 10:38 2009-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208851 9.8 CRITICAL
Network
bluecms_project bluecms BlueCMS v1.6 contains a SQL injection vulnerability via /ad_js.php. CWE-89
SQL Injection
CVE-2020-19853 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208852 7.5 HIGH
Network
rtb1_project rtb1 A lack of target address verification in the BurnMe() function of Rob The Bank 1.0 allows attackers to steal tokens from victim users via a crafted script. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-19769 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208853 7.5 HIGH
Network
tokensale_project tokensale A lack of target address verification in the selfdestructs() function of ICOVO 1.0 allows attackers to steal tokens from victim users via a crafted script. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-19768 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208854 7.5 HIGH
Network
zeroxracer_project zeroxracer A lack of target address verification in the destroycontract() function of 0xRACER 1.0 allows attackers to steal tokens from victim users via a crafted script. NVD-CWE-noinfo
CVE-2020-19767 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208855 7.5 HIGH
Network
tokenerc20_project tokenerc20 The time check operation of PepeAuctionSale 1.0 can be rendered ineffective by assigning a large number to the _duration variable, compromising access control to the application. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-19766 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208856 7.5 HIGH
Network
proofofdiligencetoken_project proofofdiligencetoken An issue in the noReentrance() modifier of the Ethereum-based contract Accounting 1.0 allows attackers to carry out a reentrancy attack. CWE-863
 Incorrect Authorization
CVE-2020-19765 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208857 7.5 HIGH
Network
lcdf
fedoraproject
gifsicle
fedora
The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2020-19752 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208858 9.1 CRITICAL
Network
gpac gpac An issue was discovered in gpac 0.8.0. The gf_odf_del_ipmp_tool function in odf_code.c has a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2020-19751 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208859 7.5 HIGH
Network
gpac gpac An issue was discovered in gpac 0.8.0. The strdup function in box_code_base.c has a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2020-19750 2024-11-21 14:09 2021-09-8 Show GitHub Exploit DB Packet Storm
208860 7.2 HIGH
Network
zzcms zzcms A remote code execution (RCE) vulnerability in template_user.php of ZZCMS version 2018 allows attackers to execute arbitrary PHP code via the "ml" and "title" parameters. CWE-94
Code Injection
CVE-2020-19822 2024-11-21 14:09 2021-08-26 Show GitHub Exploit DB Packet Storm