Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255411 9.3 危険 アドビシステムズ - Adobe Shockwave Player の dirapi.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4085 2010-11-17 16:50 2010-10-28 Show GitHub Exploit DB Packet Storm
255412 9.3 危険 アドビシステムズ - Adobe Shockwave Player の dirapi.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4084 2010-11-17 16:50 2010-10-28 Show GitHub Exploit DB Packet Storm
255413 9.3 危険 アドビシステムズ - Adobe Shockwave Player の dirapi.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3655 2010-11-17 16:49 2010-10-28 Show GitHub Exploit DB Packet Storm
255414 9.3 危険 アドビシステムズ - Adobe Shockwave Player の TextXtra.x32 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2582 2010-11-17 16:49 2010-10-28 Show GitHub Exploit DB Packet Storm
255415 9.3 危険 アドビシステムズ - Adobe Shockwave Player の dirapi.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2581 2010-11-17 16:48 2010-10-28 Show GitHub Exploit DB Packet Storm
255416 9.3 危険 アドビシステムズ - Adobe Shockwave Player に脆弱性 CWE-119
バッファエラー
CVE-2010-3653 2010-11-16 14:49 2010-10-25 Show GitHub Exploit DB Packet Storm
255417 7.5 危険 富士通 - Interstage Application Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6258 2010-11-16 14:48 2008-02-19 Show GitHub Exploit DB Packet Storm
255418 6.5 警告 アップル
サイバートラスト株式会社
MySQL AB
ターボリナックス
レッドハット
- MySQL におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1848 2010-11-15 16:20 2010-05-5 Show GitHub Exploit DB Packet Storm
255419 5 警告 サイバートラスト株式会社
Zabbix
- Zabbix サーバの trapper/trapper.c 内にある process_trap 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-4500 2010-11-15 15:41 2009-07-21 Show GitHub Exploit DB Packet Storm
255420 9.3 危険 サイバートラスト株式会社
Zabbix
- Zabbix Agent の net.c 内にある NET_TCP_LISTEN 関数における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4502 2010-11-15 15:41 2009-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208591 10.0 CRITICAL
Network
apache
oracle
commons_configuration
database_server
healthcare_foundation
Apache Commons Configuration uses a third-party library to parse YAML files which by default allows the instantiation of classes if the YAML includes special statements. Apache Commons Configuration … NVD-CWE-noinfo
CVE-2020-1953 2024-11-21 14:11 2020-03-14 Show GitHub Exploit DB Packet Storm
208592 9.1 CRITICAL
Network
linuxfoundation osquery Incorrect validation of the TLS SNI hostname in osquery versions after 2.9.0 and before 4.2.0 could allow an attacker to MITM osquery traffic in the absence of a configured root chain of trust. CWE-295
Improper Certificate Validation 
CVE-2020-1887 2024-11-21 14:11 2020-03-13 Show GitHub Exploit DB Packet Storm
208593 7.5 HIGH
Network
huawei usg6000v_firmware Huawei USG6000V with versions V500R001C20SPC300, V500R003C00SPC100, and V500R005C00SPC100 have an out-of-bounds read vulnerability. Due to a logical flaw in a JSON parsing routine, a remote, unauthen… CWE-125
Out-of-bounds Read
CVE-2020-1863 2024-11-21 14:11 2020-03-13 Show GitHub Exploit DB Packet Storm
208594 3.9 LOW
Local
redhat
fedoraproject
debian
ansible_tower
ansible
cloudforms_management_engine
openstack
fedora
debian_linux
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to oth… - CVE-2020-1739 2024-11-21 14:11 2020-03-13 Show GitHub Exploit DB Packet Storm
208595 9.8 CRITICAL
Network
apache shardingsphere In Apache ShardingSphere(incubator) 4.0.0-RC3 and 4.0.0, the ShardingSphere's web console uses the SnakeYAML library for parsing YAML inputs to load datasource configuration. SnakeYAML allows to unma… CWE-502
 Deserialization of Untrusted Data
CVE-2020-1947 2024-11-21 14:11 2020-03-12 Show GitHub Exploit DB Packet Storm
208596 7.8 HIGH
Local
paloaltonetworks pan-os A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privilege… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-1981 2024-11-21 14:11 2020-03-12 Show GitHub Exploit DB Packet Storm
208597 7.8 HIGH
Local
paloaltonetworks pan-os A shell command injection vulnerability in the PAN-OS CLI allows a local authenticated user to escape the restricted shell and escalate privileges. This issue affects only PAN-OS 8.1 versions earlier… CWE-78
OS Command 
CVE-2020-1980 2024-11-21 14:11 2020-03-12 Show GitHub Exploit DB Packet Storm
208598 7.8 HIGH
Local
paloaltonetworks pan-os A format string vulnerability in the PAN-OS log daemon (logd) on Panorama allows a network based attacker with knowledge of registered firewall devices and access to Panorama management interfaces to… CWE-134
Use of Externally-Controlled Format String
CVE-2020-1979 2024-11-21 14:11 2020-03-12 Show GitHub Exploit DB Packet Storm
208599 5.0 MEDIUM
Local
redhat
fedoraproject
debian
cloudforms_management_engine
ansible_tower
ansible
openstack
fedora
debian_linux
A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a playbook with an unprivileged become user. When Ansible needs to run a module with … CWE-362
Race Condition
CVE-2020-1733 2024-11-21 14:11 2020-03-12 Show GitHub Exploit DB Packet Storm
208600 7.8 HIGH
Local
redhat ansible_tower
ansible_engine
A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9.6 and prior when using the Extract-Zip function from the win_unzip module as the extracted file(s) are not checked if they belon… CWE-22
Path Traversal
CVE-2020-1737 2024-11-21 14:11 2020-03-10 Show GitHub Exploit DB Packet Storm