Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255881 4.3 警告 Opera Software ASA - Opera における URL を偽装される脆弱性 CWE-Other
その他
CVE-2009-3047 2010-09-27 16:15 2009-09-1 Show GitHub Exploit DB Packet Storm
255882 5 警告 Opera Software ASA - Opera における証明書チェーンの有効性を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3046 2010-09-27 16:15 2009-09-1 Show GitHub Exploit DB Packet Storm
255883 5 警告 Opera Software ASA - Opera における任意の SSL サーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2009-3045 2010-09-27 16:15 2009-09-1 Show GitHub Exploit DB Packet Storm
255884 9.3 危険 Opera Software ASA - Opera における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3831 2010-09-27 16:14 2009-10-28 Show GitHub Exploit DB Packet Storm
255885 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3269 2010-09-27 16:14 2009-09-18 Show GitHub Exploit DB Packet Storm
255886 4.3 警告 Opera Software ASA - Opera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3266 2010-09-27 16:14 2009-09-18 Show GitHub Exploit DB Packet Storm
255887 4.3 警告 Opera Software ASA - Opera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3265 2010-09-27 16:14 2009-09-18 Show GitHub Exploit DB Packet Storm
255888 5 警告 Opera Software ASA - Opera の X.509 証明書における SSLサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2009-3044 2010-09-27 16:13 2009-09-1 Show GitHub Exploit DB Packet Storm
255889 4.3 警告 Opera Software ASA - Opera における data: URI をブロックしない脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3013 2010-09-27 16:13 2009-08-31 Show GitHub Exploit DB Packet Storm
255890 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-2577 2010-09-27 16:12 2009-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213191 8.8 HIGH
Network
apache
debian
oracle
velocity_engine
wss4j
debian_linux
retail_order_broker
banking_platform
communications_network_integrity
banking_enterprise_default_management
banking_party_management
utiliti…
An attacker that is able to modify Velocity templates may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account running the Servlet container. This appl… NVD-CWE-noinfo
CVE-2020-13936 2024-11-21 14:02 2021-03-10 Show GitHub Exploit DB Packet Storm
213192 7.5 HIGH
Network
apache
oracle
thrift
hive
communications_cloud_native_core_network_slice_selection_function
communications_cloud_native_core_policy
In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-13949 2024-11-21 14:02 2021-02-13 Show GitHub Exploit DB Packet Storm
213193 6.1 MEDIUM
Network
apache
oracle
activemq
communications_session_route_manager
communications_session_report_manager
An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the message.jsp page of Apache ActiveMQ versions 5.15.12 through 5.16.0. CWE-79
Cross-site Scripting
CVE-2020-13947 2024-11-21 14:02 2021-02-9 Show GitHub Exploit DB Packet Storm
213194 5.9 MEDIUM
Network
fedoraproject fedora A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all versions Red Hat Enterprise Linux, where it listens on any interface and accepts queri… NVD-CWE-Other
CVE-2020-14312 2024-11-21 14:02 2021-02-6 Show GitHub Exploit DB Packet Storm
213195 6.5 MEDIUM
Network
hcltechsw onetest_performance HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID. CWE-613
 Insufficient Session Expiration
CVE-2020-14247 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213196 7.5 HIGH
Network
hcltechsw onetest_performance HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potentially decode the encoded credentials. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-14246 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213197 9.8 CRITICAL
Network
hcltechsw onetest_performance HCL OneTest UI V9.5, V10.0, and V10.1 does not perform authentication for functionality that either requires a provable user identity or consumes a significant amount of resources. CWE-306
Missing Authentication for Critical Function
CVE-2020-14245 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213198 7.5 HIGH
Network
hcltech digital_experience HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to unauthorized parties via crafted requests. These affect containers only. These do not affect traditio… NVD-CWE-noinfo
CVE-2020-14255 2024-11-21 14:02 2021-02-3 Show GitHub Exploit DB Packet Storm
213199 4.9 MEDIUM
Network
hcltech digital_experience HCL Digital Experience 8.5, 9.0, and 9.5 exposes information about the server to unauthorized users. NVD-CWE-noinfo
CVE-2020-14221 2024-11-21 14:02 2021-02-3 Show GitHub Exploit DB Packet Storm
213200 4.3 MEDIUM
Network
atlassian crucible
fisheye
Affected versions of Atlassian Fisheye and Crucible allow remote attackers to view a product's SEN via an Information Disclosure vulnerability in the x-asen response header from Atlassian Analytics. … CWE-200
Information Exposure
CVE-2020-14192 2024-11-21 14:02 2021-02-2 Show GitHub Exploit DB Packet Storm