Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254901 9.3 危険 マイクロソフト - Microsoft Internet Explorer の Tabular Data Control ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0805 2010-04-19 19:20 2010-03-30 Show GitHub Exploit DB Packet Storm
254902 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0491 2010-04-19 19:19 2010-03-30 Show GitHub Exploit DB Packet Storm
254903 4.3 警告 マイクロソフト - Microsoft Internet Explorer における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2010-0494 2010-04-19 19:19 2010-03-30 Show GitHub Exploit DB Packet Storm
254904 9.3 危険 マイクロソフト - Microsoft Internet Explorer の mstime.dll における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0492 2010-04-19 19:19 2010-03-30 Show GitHub Exploit DB Packet Storm
254905 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0490 2010-04-19 19:18 2010-03-30 Show GitHub Exploit DB Packet Storm
254906 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0807 2010-04-19 19:18 2010-03-30 Show GitHub Exploit DB Packet Storm
254907 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-362
競合状態
CVE-2010-0489 2010-04-19 19:18 2010-03-30 Show GitHub Exploit DB Packet Storm
254908 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0267 2010-04-19 19:18 2010-03-30 Show GitHub Exploit DB Packet Storm
254909 10 危険 アップル - Apple Mac OS X の xar におけるパッケージ署名の検証処理に関する脆弱性 CWE-DesignError
CVE-2010-0055 2010-04-16 16:59 2010-03-29 Show GitHub Exploit DB Packet Storm
254910 0 注意 アップル - Apple Mac OS X の Wiki サーバにおけるコンテンツを公開される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0534 2010-04-16 16:58 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196661 6.8 MEDIUM
Physics
lenovo thinkpad_e14_firmware
thinkpad_e15_firmware
thinkpad_r14_firmware
thinkpad_s3_gen_2_firmware
thinkpad_e490s_firmware
thinkpad_s3_firmware
thinkpad_e490_firmware
thinkpad_e590_fir…
Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmware in flash. NVD-CWE-noinfo
CVE-2020-8336 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196662 6.8 MEDIUM
Physics
lenovo thinkpad_t495s_firmware
thinkpad_x395_firmware
thinkpad_t495_firmware
thinkpad_a485_firmware
thinkpad_a285_firmware
thinkpad_a475_firmware
thinkpad_a275_firmware
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-8334 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196663 6.7 MEDIUM
Local
lenovo 330-14ast_firmware
330-15ast_firmware
330-17ast_firmware
340c-15api_firmware
340c-15ast_firmware
720s_touch-15ikb_firmware
720s-15ikb_firmware
730s-13iwl_firmware
c640-iml_fir…
A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution. NVD-CWE-noinfo
CVE-2020-8323 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196664 6.7 MEDIUM
Local
lenovo 330-14ast_firmware
330-15ast_firmware
330-17ast_firmware
340c-15api_firmware
340c-15ast_firmware
720s_touch-15ikb_firmware
720s-15ikb_firmware
730s-13iwl_firmware
c640-iml_fir…
A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution. NVD-CWE-noinfo
CVE-2020-8322 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196665 6.7 MEDIUM
Local
lenovo 130-14ast_firmware
130-14ikb_firmware
130-15ast_firmware
130-15ikb_firmware
320c-15ikb_firmware
330-14igm_firmware
330-14ikb_firmware
330-14ikbr_firmware
330-15arr_firmware
A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution. NVD-CWE-noinfo
CVE-2020-8321 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196666 6.8 MEDIUM
Physics
lenovo thinkpad_11e_yoga_gen_6_firmware
thinkpad_11e_firmware
thinkpad_yoga_11e_3rd_gen_firmware
thinkpad_yoga_11e_4th_gen_firmware
thinkpad_yoga_11e_5th_gen_firmware
thinkpad_13_2nd_gen_firm…
An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege. CWE-269
 Improper Privilege Management
CVE-2020-8320 2024-11-21 14:38 2020-06-10 Show GitHub Exploit DB Packet Storm
196667 9.9 CRITICAL
Network
nextcloud talk A too lax check in Nextcloud Talk 6.0.4, 7.0.2 and 8.0.7 allowed a code injection when a not correctly sanitized talk command was added by an administrator. CWE-94
Code Injection
CVE-2020-8180 2024-11-21 14:38 2020-06-8 Show GitHub Exploit DB Packet Storm
196668 7.4 HIGH
Network
nodejs
oracle
node.js
graalvm
banking_extensibility_workbench
mysql_cluster
blockchain_platform
TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0. CWE-295
Improper Certificate Validation 
CVE-2020-8172 2024-11-21 14:38 2020-06-8 Show GitHub Exploit DB Packet Storm
196669 7.1 HIGH
Local
bitdefender antivirus_2020 A vulnerability in the improper handling of symbolic links in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This… CWE-59
Link Following
CVE-2020-8103 2024-11-21 14:38 2020-06-6 Show GitHub Exploit DB Packet Storm
196670 5.5 MEDIUM
Local
abb device_library_wizard Insecure storage of sensitive information in ABB Device Library Wizard versions 6.0.X, 6.0.3.1 and 6.0.3.2 allows unauthenticated low privilege user to read file that contains confidential data CWE-922
 Insecure Storage of Sensitive Information
CVE-2020-8482 2024-11-21 14:38 2020-05-30 Show GitHub Exploit DB Packet Storm