Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254191 9.3 危険 Opera Software ASA - Opera における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2008-4197 2010-09-27 16:03 2008-09-27 Show GitHub Exploit DB Packet Storm
254192 4.3 警告 Opera Software ASA - Opera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4196 2010-09-27 16:02 2008-09-27 Show GitHub Exploit DB Packet Storm
254193 5 警告 Opera Software ASA - Opera における任意のアドレスの表示を誘発させられる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4195 2010-09-27 16:02 2008-09-27 Show GitHub Exploit DB Packet Storm
254194 6.8 警告 Opera Software ASA - Opera における HTTP セッションハイジャックの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3172 2010-09-27 16:01 2008-07-14 Show GitHub Exploit DB Packet Storm
254195 10 危険 Opera Software ASA - Windows 上で稼働する Opera における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-3079 2010-09-27 16:01 2008-07-9 Show GitHub Exploit DB Packet Storm
254196 7.8 危険 Opera Software ASA - Opera における初期化されていないメモリコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2008-3078 2010-09-27 16:01 2008-07-9 Show GitHub Exploit DB Packet Storm
254197 5 警告 Opera Software ASA - Opera における信頼されたフレームのコンテンツを偽装される脆弱性 CWE-DesignError
CVE-2008-2716 2010-09-27 16:00 2008-06-16 Show GitHub Exploit DB Packet Storm
254198 5 警告 Opera Software ASA - Opera におけるクロスドメインの脆弱性 CWE-200
情報漏えい
CVE-2008-2715 2010-09-27 16:00 2008-06-16 Show GitHub Exploit DB Packet Storm
254199 5 警告 Opera Software ASA - Opera における Web ページのアドレスを偽装される脆弱性 CWE-DesignError
CVE-2008-2714 2010-09-27 15:59 2008-06-16 Show GitHub Exploit DB Packet Storm
254200 9.3 危険 Opera Software ASA - Opera におけるパスワード入力時のキーボードハンドリングの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2008-1764 2010-09-27 15:59 2008-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201591 9.8 CRITICAL
Network
coscale_agent_project coscale_agent Version 3.16.0 of the CoScale agent Docker image contains a blank password for the root user. Systems deployed using affected versions of the CoScale agent container may allow a remote attacker to ac… CWE-306
Missing Authentication for Critical Function
CVE-2020-35462 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201592 6.1 MEDIUM
Network
onlineonly phpjabbers_appointment_scheduler Multiple cross-site scripting (XSS) vulnerabilities exist in PHPJabbers Appointment Scheduler 2.3, in the index.php admin login webpage (with different request parameters), allows remote attackers to… CWE-79
Cross-site Scripting
CVE-2020-35416 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201593 7.5 HIGH
Network
jsonparser_project
fedoraproject
jsonparser
fedora
jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a GET call. NVD-CWE-noinfo
CVE-2020-35381 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201594 7.5 HIGH
Network
gjson_project gjson GJSON before 1.6.4 allows attackers to cause a denial of service via crafted JSON. NVD-CWE-noinfo
CVE-2020-35380 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201595 6.1 MEDIUM
Network
egavilanmedia barcodes_generator EGavilan Barcodes generator 1.0 is affected by: Cross Site Scripting (XSS) via the index.php. An Attacker is able to inject the XSS payload in the web application each time a user visits the website. CWE-79
Cross-site Scripting
CVE-2020-35396 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201596 6.1 MEDIUM
Network
egavilanmedia expense_management_system XSS in the Add Expense Component of EGavilan Media Expense Management System 1.0 allows an attacker to permanently store malicious JavaScript code via the 'description' field CWE-79
Cross-site Scripting
CVE-2020-35395 2024-11-21 14:27 2020-12-16 Show GitHub Exploit DB Packet Storm
201597 7.5 HIGH
Network
envoyproxy envoy Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet size larger than 1500. NVD-CWE-noinfo
CVE-2020-35471 2024-11-21 14:27 2020-12-15 Show GitHub Exploit DB Packet Storm
201598 8.8 HIGH
Adjacent
envoyproxy envoy Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-prox… NVD-CWE-noinfo
CVE-2020-35470 2024-11-21 14:27 2020-12-15 Show GitHub Exploit DB Packet Storm
201599 5.3 MEDIUM
Network
mpxj
oracle
mpxj
primavera_unifier
common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations. CWE-22
Path Traversal
CVE-2020-35460 2024-11-21 14:27 2020-12-15 Show GitHub Exploit DB Packet Storm
201600 7.8 HIGH
Local
gnome glib GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entries. NOTE: the vendor's position is "Realistically this is not a security issue.… CWE-787
CWE-190
 Out-of-bounds Write
 Integer Overflow or Wraparound
CVE-2020-35457 2024-11-21 14:27 2020-12-15 Show GitHub Exploit DB Packet Storm