Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256131 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0246 2010-02-22 12:14 2010-01-21 Show GitHub Exploit DB Packet Storm
256132 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0245 2010-02-22 12:13 2010-01-21 Show GitHub Exploit DB Packet Storm
256133 4.3 警告 マイクロソフト - Microsoft Internet Explorer の XSS フィルタにおけるクロスサイトスクリプティングの脆弱性 CWE-DesignError
CVE-2009-4074 2010-02-22 12:13 2009-11-25 Show GitHub Exploit DB Packet Storm
256134 6.6 警告 マイクロソフト - Microsoft Windows の kernel における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0232 2010-02-22 12:12 2010-01-20 Show GitHub Exploit DB Packet Storm
256135 10 危険 Rockwell Automation - Rockwell Automation Allen-Bradley MicroLogix PLC に複数の脆弱性 CWE-noinfo
情報不足
CVE-2009-3739 2010-02-19 14:22 2010-01-21 Show GitHub Exploit DB Packet Storm
256136 9.3 危険 マイクロソフト - Microsoft Internet Explorer において任意のコードが実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0249 2010-02-19 14:21 2010-01-15 Show GitHub Exploit DB Packet Storm
256137 7.5 危険 アップル
MySQL AB
- MySQL で使用される yaSSL におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-0227 2010-02-19 11:37 2008-01-10 Show GitHub Exploit DB Packet Storm
256138 7.5 危険 アップル
MySQL AB
- MySQL で使用される yaSSL における複数のバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0226 2010-02-19 11:32 2008-01-10 Show GitHub Exploit DB Packet Storm
256139 7.5 危険 Linux
レッドハット
- Linux kernel の do_coredump 関数における任意のファイルを改ざんされる脆弱性 - CVE-2006-6304 2010-02-18 14:28 2006-12-14 Show GitHub Exploit DB Packet Storm
256140 7.8 危険 Linux
レッドハット
- Linux kernel の net/ipv4/route.c 用の特定のレッドハットパッチにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-4272 2010-02-18 14:28 2010-01-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211181 5.5 MEDIUM
Local
mi miui The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15. NVD-CWE-noinfo
CVE-2020-14103 2024-11-21 14:02 2021-04-9 Show GitHub Exploit DB Packet Storm
211182 8.1 HIGH
Network
mi ax3600_firmware A RACE CONDITION on XQBACKUP causes a decompression path error on Xiaomi router AX3600 with ROM version =1.0.50. CWE-362
Race Condition
CVE-2020-14104 2024-11-21 14:02 2021-04-9 Show GitHub Exploit DB Packet Storm
211183 7.5 HIGH
Network
mi ax1800_firmware
rm1800_firmware
On Xiaomi router AX1800 rom version < 1.0.336 and RM1800 root version < 1.0.26, the encryption scheme for a user's backup files uses hard-coded keys, which can expose sensitive information such as a … CWE-798
 Use of Hard-coded Credentials
CVE-2020-14099 2024-11-21 14:02 2021-04-9 Show GitHub Exploit DB Packet Storm
211184 9.8 CRITICAL
Network
soplanning soplanning SOPlanning before 1.47 has Incorrect Access Control because certain secret key information, and the related authentication algorithm, is public. The key for admin is hardcoded in the installation cod… CWE-798
 Use of Hard-coded Credentials
CVE-2020-13963 2024-11-21 14:02 2021-03-22 Show GitHub Exploit DB Packet Storm
211185 7.5 HIGH
Network
apache ambari In Apache Ambari versions 2.6.2.2 and earlier, malicious users can construct file names for directory traversal and traverse to other directories to download files. CWE-22
Path Traversal
CVE-2020-13924 2024-11-21 14:02 2021-03-17 Show GitHub Exploit DB Packet Storm
211186 6.1 MEDIUM
Network
apache
debian
velocity_tools
debian_linux
The default error page for VelocityView in Apache Velocity Tools prior to 3.1 reflects back the vm file that was entered as part of the URL. An attacker can set an XSS payload file as this vm file in… CWE-79
Cross-site Scripting
CVE-2020-13959 2024-11-21 14:02 2021-03-10 Show GitHub Exploit DB Packet Storm
211187 8.8 HIGH
Network
apache
debian
oracle
velocity_engine
wss4j
debian_linux
retail_order_broker
banking_platform
communications_network_integrity
banking_enterprise_default_management
banking_party_management
utiliti…
An attacker that is able to modify Velocity templates may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account running the Servlet container. This appl… NVD-CWE-noinfo
CVE-2020-13936 2024-11-21 14:02 2021-03-10 Show GitHub Exploit DB Packet Storm
211188 7.5 HIGH
Network
apache
oracle
thrift
hive
communications_cloud_native_core_network_slice_selection_function
communications_cloud_native_core_policy
In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-13949 2024-11-21 14:02 2021-02-13 Show GitHub Exploit DB Packet Storm
211189 6.1 MEDIUM
Network
apache
oracle
activemq
communications_session_route_manager
communications_session_report_manager
An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the message.jsp page of Apache ActiveMQ versions 5.15.12 through 5.16.0. CWE-79
Cross-site Scripting
CVE-2020-13947 2024-11-21 14:02 2021-02-9 Show GitHub Exploit DB Packet Storm
211190 5.9 MEDIUM
Network
fedoraproject fedora A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all versions Red Hat Enterprise Linux, where it listens on any interface and accepts queri… NVD-CWE-Other
CVE-2020-14312 2024-11-21 14:02 2021-02-6 Show GitHub Exploit DB Packet Storm