Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256201 5 警告 日立 - Groupmax World Wide Web Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2010-06-14 16:24 2010-05-26 Show GitHub Exploit DB Packet Storm
256202 4.3 警告 日立 - Hitachi Web Server の SSL クライアント認証における CRL 失効確認不可の脆弱性 CWE-287
不適切な認証
- 2010-06-14 16:24 2010-05-17 Show GitHub Exploit DB Packet Storm
256203 5 警告 日立 - TP1/Message Control におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
- 2010-06-14 16:23 2010-05-17 Show GitHub Exploit DB Packet Storm
256204 10 危険 日立
CA Technologies
- CA XOsoft におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1223 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256205 5 警告 日立
CA Technologies
- CA XOsoft における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2010-1222 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256206 5 警告 日立
CA Technologies
- CA XOsoft におけるユーザ名を列挙される脆弱性 CWE-287
不適切な認証
CVE-2010-1221 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256207 6.8 警告 フェンリル株式会社 - ActiveGeckoBrowser における複数の脆弱性 CWE-Other
その他
CVE-2010-2420 2010-06-14 12:01 2010-06-14 Show GitHub Exploit DB Packet Storm
256208 6.8 警告 サン・マイクロシステムズ
GNU Project
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU tar および GNU cpio の rmt_read__ 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0624 2010-06-11 18:45 2010-03-15 Show GitHub Exploit DB Packet Storm
256209 3.5 注意 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0733 2010-06-9 16:54 2010-03-19 Show GitHub Exploit DB Packet Storm
256210 6.5 警告 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL の bitsubstr 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-0442 2010-06-9 16:54 2010-02-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198091 5.3 MEDIUM
Network
intel active_management_technology_firmware
service_manager
Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable informa… CWE-125
Out-of-bounds Read
CVE-2020-8674 2024-11-21 14:39 2020-06-15 Show GitHub Exploit DB Packet Storm
198092 5.4 MEDIUM
Network
openbrowser_project openbrowser OpenSearch Web browser 1.0.4.9 allows Intent Scheme Hijacking.[a link that opens another app in the browser can be manipulated] CWE-276
Incorrect Default Permissions 
CVE-2020-8954 2024-11-21 14:39 2020-06-9 Show GitHub Exploit DB Packet Storm
198093 8.8 HIGH
Network
couchbase couchbase_server In Couchbase Server 6.0, credentials cached by a browser can be used to perform a CSRF attack if an administrator has used their browser to check the results of a REST API request. CWE-352
 Origin Validation Error
CVE-2020-9042 2024-11-21 14:39 2020-06-9 Show GitHub Exploit DB Packet Storm
198094 7.5 HIGH
Network
couchbase sync_gateway
couchbase_server
In Couchbase Server 6.0.3 and Couchbase Sync Gateway through 2.7.0, the Cluster management, views, query, and full-text search endpoints are vulnerable to the Slowloris denial-of-service attack becau… CWE-404
 Improper Resource Shutdown or Release
CVE-2020-9041 2024-11-21 14:39 2020-06-9 Show GitHub Exploit DB Packet Storm
198095 7.5 HIGH
Network
couchbase couchbase_server_java_sdk Couchbase Server Java SDK before 2.7.1.1 allows a potential attacker to forge an SSL certificate and pose as the intended peer. An attacker can leverage this flaw by crafting a cryptographically vali… CWE-295
Improper Certificate Validation 
CVE-2020-9040 2024-11-21 14:39 2020-06-9 Show GitHub Exploit DB Packet Storm
198096 6.3 MEDIUM
Network
kubernetes
fedoraproject
kubernetes
fedora
The Kubernetes kube-controller-manager in versions v1.0-1.14, versions prior to v1.15.12, v1.16.9, v1.17.5, and version v1.18.0 are vulnerable to a Server Side Request Forgery (SSRF) that allows cert… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-8555 2024-11-21 14:39 2020-06-6 Show GitHub Exploit DB Packet Storm
198097 5.3 MEDIUM
Network
huawei honor_20_pro_firmware
honor_view_20_firmware
honor_20_firmware
Huawei Smartphones HONOR 20 PRO;Honor View 20;HONOR 20 have an improper handling of exceptional condition Vulnerability. A component cannot deal with an exception correctly. Attackers can exploit thi… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-9074 2024-11-21 14:39 2020-06-6 Show GitHub Exploit DB Packet Storm
198098 9.8 CRITICAL
Network
gesio erp There is an improper Neutralization of Special Elements used in an SQL Command (SQL Injection) vulnerability in php files of GESIO ERP. GESIO ERP all versions prior to 11.2 allows malicious users to … CWE-89
SQL Injection
CVE-2020-8967 2024-11-21 14:39 2020-06-1 Show GitHub Exploit DB Packet Storm
198099 6.5 MEDIUM
Network
huawei ar120-s_firmware
ar1200_firmware
ar1200-s_firmware
ar150_firmware
ar150-s_firmware
ar160_firmware
ar200_firmware
ar200-s_firmware
ar2200_firmware
ar2200-s_firmware
ar320…
There is a few bytes out-of-bounds read vulnerability in some Huawei products. The software reads data past the end of the intended buffer when parsing certain message, an authenticated attacker coul… CWE-125
Out-of-bounds Read
CVE-2020-9071 2024-11-21 14:39 2020-06-2 Show GitHub Exploit DB Packet Storm
198100 7.2 HIGH
Network
pi-hole pi-hole Pi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via a crafted DHCP static lease. CWE-78
OS Command 
CVE-2020-8816 2024-11-21 14:39 2020-05-30 Show GitHub Exploit DB Packet Storm