Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255761 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-3982 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
255762 9.3 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-3981 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
255763 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-3980 2010-01-28 12:15 2009-12-15 Show GitHub Exploit DB Packet Storm
255764 10 危険 アドビシステムズ - Adobe Flash Media Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3792 2010-01-27 10:02 2009-12-18 Show GitHub Exploit DB Packet Storm
255765 5 警告 アドビシステムズ - Adobe Flash Media Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-3791 2010-01-27 10:02 2009-12-18 Show GitHub Exploit DB Packet Storm
255766 5.8 警告 PostgreSQL.org
ターボリナックス
サン・マイクロシステムズ
- PostgreSQL における X.509 証明書の処理に関する任意の SSL-based PostgreSQL サーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2009-4034 2010-01-26 11:48 2009-12-15 Show GitHub Exploit DB Packet Storm
255767 7.8 危険 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の do_insn_fetch 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-4031 2010-01-26 11:47 2009-11-29 Show GitHub Exploit DB Packet Storm
255768 7.8 危険 サイバートラスト株式会社
Linux
レッドハット
- Linux Kernel の r8169 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3613 2010-01-26 11:38 2009-10-19 Show GitHub Exploit DB Packet Storm
255769 4.6 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の NFSv4 における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3286 2010-01-26 11:38 2009-09-22 Show GitHub Exploit DB Packet Storm
255770 4.9 警告 サイバートラスト株式会社
Linux
レッドハット
- Linux Kernel の d_delete 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2009-2908 2010-01-26 11:38 2009-10-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198201 9.8 CRITICAL
Network
os4ed opensis openSIS Community Edition version 7.3 is vulnerable to SQL injection via the USERNAME parameter of index.php. CWE-89
SQL Injection
CVE-2020-6637 2024-11-21 14:36 2020-08-25 Show GitHub Exploit DB Packet Storm
198202 6.5 MEDIUM
Network
elastic elasticsearch In Elasticsearch before 7.9.0 and 6.8.12 a field disclosure flaw was found when running a scrolling search with Field Level Security. If a user runs the same query another more privileged user recent… CWE-269
 Improper Privilege Management
CVE-2020-7019 2024-11-21 14:36 2020-08-19 Show GitHub Exploit DB Packet Storm
198203 8.8 HIGH
Network
elastic enterprise_search Elastic Enterprise Search before 7.9.0 contain a credential exposure flaw in the App Search interface. If a user is given the �developer� role, they will be able to view the administrator API cre… CWE-269
 Improper Privilege Management
CVE-2020-7018 2024-11-21 14:36 2020-08-19 Show GitHub Exploit DB Packet Storm
198204 3.9 LOW
Physics
eaton secureconnect Eaton's Secure connect mobile app v1.7.3 & prior stores the user login credentials in logcat file when user create or register the account on the Mobile app. A malicious app or unauthorized user can … CWE-200
CWE-532
Information Exposure
 Inclusion of Sensitive Information in Log Files
CVE-2020-6653 2024-11-21 14:36 2020-08-13 Show GitHub Exploit DB Packet Storm
198205 9.8 CRITICAL
Network
blackberry qnx_software_development_platform An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to pote… NVD-CWE-noinfo
CVE-2020-6932 2024-11-21 14:36 2020-08-12 Show GitHub Exploit DB Packet Storm
198206 8.8 HIGH
Network
avaya aura_messaging
aura_communication_manager
A Cross-Site Request Forgery (CSRF) vulnerability was discovered in the System Management Interface Web component of Avaya Aura Communication Manager and Avaya Aura Messaging. This vulnerability coul… CWE-352
 Origin Validation Error
CVE-2020-7029 2024-11-21 14:36 2020-08-12 Show GitHub Exploit DB Packet Storm
198207 6.7 MEDIUM
Local
hpe intelligent_provisioning
service_pack_for_proliant
smartstart_scripting_toolkit
A potential security vulnerability has been identified in HPE Intelligent Provisioning, Service Pack for ProLiant, and HPE Scripting ToolKit. The vulnerability could be locally exploited to allow arb… NVD-CWE-noinfo
CVE-2020-7205 2024-11-21 14:36 2020-07-31 Show GitHub Exploit DB Packet Storm
198208 4.8 MEDIUM
Network
elasticsearch
oracle
kibana
peoplesoft_enterprise_peopletools
communications_billing_and_revenue_management
communications_cloud_native_core_network_function_cloud_native_environment
Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming … CWE-400
 Uncontrolled Resource Consumption
CVE-2020-7016 2024-11-21 14:36 2020-07-28 Show GitHub Exploit DB Packet Storm
198209 6.7 MEDIUM
Network
elasticsearch
oracle
kibana
peoplesoft_enterprise_peopletools
communications_billing_and_revenue_management
communications_cloud_native_core_network_function_cloud_native_environment
In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive info… CWE-79
Cross-site Scripting
CVE-2020-7017 2024-11-21 14:36 2020-07-28 Show GitHub Exploit DB Packet Storm
198210 6.1 MEDIUM
Network
zte r8500g4_firmware
r5500g4_firmware
r5300g4_firmware
The server management software module of ZTE has a storage XSS vulnerability. The attacker inserts some attack codes through the foreground login page, which will cause the user to execute the predef… CWE-79
Cross-site Scripting
CVE-2020-6872 2024-11-21 14:36 2020-07-21 Show GitHub Exploit DB Packet Storm