Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255811 5 警告 サン・マイクロシステムズ - Sun Solaris の sshd におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4075 2010-01-15 14:09 2009-11-23 Show GitHub Exploit DB Packet Storm
255812 2.6 注意 オラクル - Oracle Application Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2010-01-14 15:01 2010-01-14 Show GitHub Exploit DB Packet Storm
255813 9.3 危険 マイクロソフト - Microsoft Internet Explorer に脆弱性 CWE-94
コード・インジェクション
CVE-2009-3672 2010-01-14 12:08 2009-11-25 Show GitHub Exploit DB Packet Storm
255814 9.3 危険 サン・マイクロシステムズ
VMware
- Sun Java SE の java.lang パッケージにおける脆弱性 CWE-362
競合状態
CVE-2009-2724 2010-01-14 12:08 2009-08-10 Show GitHub Exploit DB Packet Storm
255815 10 危険 サン・マイクロシステムズ
VMware
- Sun Java SE の Provider クラスにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-2721 2010-01-14 12:08 2009-08-10 Show GitHub Exploit DB Packet Storm
255816 5 警告 有限会社シースリー - WebCalenderC3 におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0348 2010-01-12 15:01 2010-01-12 Show GitHub Exploit DB Packet Storm
255817 4.3 警告 有限会社シースリー - WebCalenderC3 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0349 2010-01-12 15:00 2010-01-12 Show GitHub Exploit DB Packet Storm
255818 10 危険 サイバートラスト株式会社
XEmacs
- XEmacs の glyphs-eimage.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-2688 2010-01-12 14:48 2009-08-5 Show GitHub Exploit DB Packet Storm
255819 6.8 警告 IBM - IBM WebSphere Application Server (WAS) におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-2746 2010-01-12 14:48 2009-11-13 Show GitHub Exploit DB Packet Storm
255820 5 警告 アップル - Apple Safari におけるローカル HTML ファイルを読まれる脆弱性 CWE-Other
その他
CVE-2009-2842 2010-01-7 12:09 2009-11-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196991 5.4 MEDIUM
Network
fiserv accurate_reconciliation Fiserv Accurate Reconciliation 2.19.0, fixed in 3.0.0 or higher, allows XSS via the Source or Destination field of the Configuration Manager (Configuration Parameter Translation) page. CWE-79
Cross-site Scripting
CVE-2020-8951 2024-11-21 14:39 2020-02-27 Show GitHub Exploit DB Packet Storm
196992 8.1 HIGH
Network
gurux device_language_message_specification_director An issue was discovered in Gurux GXDLMS Director through 8.5.1905.1301. When downloading OBIS codes, it does not verify that the downloaded files are actual OBIS codes and doesn't check for path trav… CWE-22
Path Traversal
CVE-2020-8810 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196993 8.1 HIGH
Network
gurux device_language_message_specification_director Gurux GXDLMS Director prior to 8.5.1905.1301 downloads updates to add-ins and OBIS code over an unencrypted HTTP connection. A man-in-the-middle attacker can prompt the user to download updates by mo… CWE-494
 Download of Code Without Integrity Check
CVE-2020-8809 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196994 6.1 MEDIUM
Network
wpjobboard wpjobboard The WPJobBoard plugin 5.5.3 for WordPress allows Persistent XSS via the Add Job form, as demonstrated by title and Description. CWE-79
Cross-site Scripting
CVE-2020-9019 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196995 5.3 MEDIUM
Network
litecart litecart LiteCart through 2.2.1 allows admin/?app=users&doc=edit_user CSRF to add a user. CWE-352
 Origin Validation Error
CVE-2020-9018 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196996 5.4 MEDIUM
Network
blackboard blackboard_learn Stored Cross-site scripting (XSS) vulnerability in Blackboard Learn/PeopleTool v9.1 allows users to inject arbitrary web script via the Tile widget in the People Tool profile editor. CWE-79
Cross-site Scripting
CVE-2020-9008 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196997 8.0 HIGH
Network
litecart litecart LiteCart through 2.2.1 allows CSV injection via a customer's profile. CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-9017 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196998 9.8 CRITICAL
Network
opensmtpd
canonical
fedoraproject
debian
opensmtpd
ubuntu_linux
fedora
debian_linux
OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerability affects the client side of OpenSMTP… CWE-125
Out-of-bounds Read
CVE-2020-8794 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
196999 4.7 MEDIUM
Local
opensmtpd
fedoraproject
canonical
opensmtpd
fedora
ubuntu_linux
OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an untrusted search path in makemap.c and race conditions in the offl… CWE-426
CWE-367
 Untrusted Search Path
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2020-8793 2024-11-21 14:39 2020-02-26 Show GitHub Exploit DB Packet Storm
197000 8.1 HIGH
Network
cardgate cardgate_payments An issue was discovered in the CardGate Payments plugin through 3.1.15 for WooCommerce. Lack of origin authentication in the IPN callback processing function in cardgate/cardgate.php allows an attack… CWE-346
 Origin Validation Error
CVE-2020-8819 2024-11-21 14:39 2020-02-25 Show GitHub Exploit DB Packet Storm