Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254501 7.2 危険 Apache Software Foundation - Apache mod_fcgid の apr_status_t fcgid_header_bucket_read 関数における脆弱性 CWE-189
数値処理の問題
CVE-2010-3872 2011-06-9 10:22 2010-06-8 Show GitHub Exploit DB Packet Storm
254502 4.3 警告 Apache Software Foundation - Apache Struts における複数のクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6682 2011-06-9 10:21 2009-04-9 Show GitHub Exploit DB Packet Storm
254503 4.3 警告 Apache Software Foundation - Apache Struts におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2025 2011-06-9 10:20 2009-04-9 Show GitHub Exploit DB Packet Storm
254504 4.3 警告 Stichting NLnet Labs - Unbound DNS リゾルバにサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1922 2011-06-8 11:55 2011-05-26 Show GitHub Exploit DB Packet Storm
254505 7.8 危険 ERLANG - Erlang/OTP SSH ライブラリで生成される乱数が推測可能な問題 CWE-310
暗号の問題
CVE-2011-0766 2011-06-8 11:54 2011-05-26 Show GitHub Exploit DB Packet Storm
254506 10 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-3415 2011-06-8 11:52 2010-09-14 Show GitHub Exploit DB Packet Storm
254507 10 危険 Google - Mac OS X 上で稼働する Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-3414 2011-06-8 11:52 2010-09-14 Show GitHub Exploit DB Packet Storm
254508 5 警告 Google - Google Chrome のポップアップブロック機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-3413 2011-06-8 11:51 2010-09-14 Show GitHub Exploit DB Packet Storm
254509 9.3 危険 Google - Google Chrome のコンソール実装における競合状態の脆弱性 CWE-362
競合状態
CVE-2010-3412 2011-06-8 11:51 2010-09-14 Show GitHub Exploit DB Packet Storm
254510 5 警告 Google - Linux 上で稼働する Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-3411 2011-06-8 11:50 2010-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215651 7.5 HIGH
Network
envoyproxy envoy Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier is susceptible to increased memory usage in the case where an HTTP/2 client requests a large payload but does not send enough window updates to consume… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-12604 2024-11-21 13:59 2020-07-2 Show GitHub Exploit DB Packet Storm
215652 7.5 HIGH
Network
envoyproxy envoy Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier may consume excessive amounts of memory when proxying HTTP/2 requests or responses with many small (i.e. 1 byte) data frames. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-12603 2024-11-21 13:59 2020-07-1 Show GitHub Exploit DB Packet Storm
215653 6.1 MEDIUM
Network
mageme webforms_pro_m2 XSS exists in the WebForms Pro M2 extension before 2.9.17 for Magento 2 via the textarea field. CWE-79
Cross-site Scripting
CVE-2020-12635 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215654 7.5 HIGH
Network
baxter phoenix_x36_firmware Phoenix Hemodialysis Delivery System SW 3.36 and 3.40, The Phoenix Hemodialysis device does not support data-in-transit encryption (e.g., TLS/SSL) when transmitting treatment and prescription data on… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12048 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215655 9.8 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24), when used with a Baxter Spectrum v8.x (model 35700BAX2) in a factory-default wireless configuration enables an FTP service with hard… CWE-798
 Use of Hard-coded Credentials
CVE-2020-12047 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215656 9.8 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) when used in conjunction with a Baxter Spectrum v8.x (model 35700BAX2), operates a Telnet service on Port 1023 with hard-coded creden… CWE-798
 Use of Hard-coded Credentials
CVE-2020-12045 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215657 9.8 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) when configured for wireless networking the FTP service operating on the WBM remains operational until the WBM is rebooted. CWE-672
 Operation on a Resource after Expiration or Release
CVE-2020-12043 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215658 9.4 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) telnet Command-Line Interface, grants access to sensitive data stored on the WBM that permits temporary configuration changes to netw… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-12041 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215659 9.8 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware Sigma Spectrum Infusion System v's6.x (model 35700BAX) and Baxter Spectrum Infusion System Version(s) 8.x (model 35700BAX2) at the application layer uses an unauthenticated clear-text communication c… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12040 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
215660 2.4 LOW
Physics
baxter sigma_spectrum_infusion_system_firmware Baxter Sigma Spectrum Infusion Pumps Sigma Spectrum Infusion System v's6.x model 35700BAX & Baxter Spectrum Infusion System v's8.x model 35700BAX2 contain hardcoded passwords when physically entered … CWE-798
 Use of Hard-coded Credentials
CVE-2020-12039 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm