Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255421 7.5 危険 ターボリナックス
MySQL AB
- MySQL で使用される yaSSL における複数のスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4484 2010-08-3 18:59 2009-12-30 Show GitHub Exploit DB Packet Storm
255422 2.1 注意 オラクル - Oracle Database Server の Export コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0901 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
255423 2.6 注意 オラクル - Windows 上で稼働する Oracle Database Server の Network Layer コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0900 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
255424 4.3 警告 オラクル - Oracle Database Server の Application Express コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0892 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
255425 6 警告 オラクル - Oracle Database Server の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0902 2010-08-2 19:31 2010-07-13 Show GitHub Exploit DB Packet Storm
255426 7.8 危険 オラクル - Windows 上で稼働する Oracle Database Server の Net Foundation Layer コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0903 2010-08-2 19:31 2010-07-13 Show GitHub Exploit DB Packet Storm
255427 7.8 危険 オラクル - Oracle Database Server の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0911 2010-08-2 19:30 2010-07-13 Show GitHub Exploit DB Packet Storm
255428 5.5 警告 PostgreSQL.org
サイバートラスト株式会社
サン・マイクロシステムズ
レッドハット
- PostgreSQL における任意のパラメータ設定を削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1975 2010-08-2 17:13 2010-05-19 Show GitHub Exploit DB Packet Storm
255429 5 警告 MySQL AB - MySQL の mysql_uninstall_plugin 関数における任意のプラグインを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1621 2010-08-2 17:13 2010-04-6 Show GitHub Exploit DB Packet Storm
255430 3.5 注意 オラクル - Oracle Fusion Middleware の Application Server Control コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2381 2010-07-30 17:43 2010-07-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198661 9.8 CRITICAL
Network
blackberry qnx_software_development_platform An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to pote… NVD-CWE-noinfo
CVE-2020-6932 2024-11-21 14:36 2020-08-12 Show GitHub Exploit DB Packet Storm
198662 8.8 HIGH
Network
avaya aura_messaging
aura_communication_manager
A Cross-Site Request Forgery (CSRF) vulnerability was discovered in the System Management Interface Web component of Avaya Aura Communication Manager and Avaya Aura Messaging. This vulnerability coul… CWE-352
 Origin Validation Error
CVE-2020-7029 2024-11-21 14:36 2020-08-12 Show GitHub Exploit DB Packet Storm
198663 6.7 MEDIUM
Local
hpe intelligent_provisioning
service_pack_for_proliant
smartstart_scripting_toolkit
A potential security vulnerability has been identified in HPE Intelligent Provisioning, Service Pack for ProLiant, and HPE Scripting ToolKit. The vulnerability could be locally exploited to allow arb… NVD-CWE-noinfo
CVE-2020-7205 2024-11-21 14:36 2020-07-31 Show GitHub Exploit DB Packet Storm
198664 4.8 MEDIUM
Network
elasticsearch
oracle
kibana
peoplesoft_enterprise_peopletools
communications_billing_and_revenue_management
communications_cloud_native_core_network_function_cloud_native_environment
Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming … CWE-400
 Uncontrolled Resource Consumption
CVE-2020-7016 2024-11-21 14:36 2020-07-28 Show GitHub Exploit DB Packet Storm
198665 6.7 MEDIUM
Network
elasticsearch
oracle
kibana
peoplesoft_enterprise_peopletools
communications_billing_and_revenue_management
communications_cloud_native_core_network_function_cloud_native_environment
In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive info… CWE-79
Cross-site Scripting
CVE-2020-7017 2024-11-21 14:36 2020-07-28 Show GitHub Exploit DB Packet Storm
198666 6.1 MEDIUM
Network
zte r8500g4_firmware
r5500g4_firmware
r5300g4_firmware
The server management software module of ZTE has a storage XSS vulnerability. The attacker inserts some attack codes through the foreground login page, which will cause the user to execute the predef… CWE-79
Cross-site Scripting
CVE-2020-6872 2024-11-21 14:36 2020-07-21 Show GitHub Exploit DB Packet Storm
198667 9.8 CRITICAL
Network
zte r8500g4_firmware
r5500g4_firmware
r5300g4_firmware
The server management software module of ZTE has an authentication issue vulnerability, which allows users to skip the authentication of the server and execute some commands for high-level users. Thi… CWE-287
Improper Authentication
CVE-2020-6871 2024-11-21 14:36 2020-07-21 Show GitHub Exploit DB Packet Storm
198668 9.8 CRITICAL
Network
hp nagios-plugins-hpilo HP nagios plugin for iLO (nagios-plugins-hpilo v1.50 and earlier) has a php code injection vulnerability. CWE-78
OS Command 
CVE-2020-7206 2024-11-21 14:36 2020-07-18 Show GitHub Exploit DB Packet Storm
198669 7.5 HIGH
Network
tableau tableau_server A sensitive information disclosure vulnerability in Tableau Server 10.5, 2018.x, 2019.x, 2020.x released before June 26, 2020, could allow access to sensitive information in log files. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-6938 2024-11-21 14:36 2020-07-9 Show GitHub Exploit DB Packet Storm
198670 6.1 MEDIUM
Network
hp icewall_sso_dfw
icewall_sso_dgfw
A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information t… CWE-79
Cross-site Scripting
CVE-2020-7140 2024-11-21 14:36 2020-07-8 Show GitHub Exploit DB Packet Storm