Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257001 7.8 危険 Mozilla Foundation - Mozilla Firefox/SeaMonkey の GeckoActiveXObject 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-3987 2010-01-29 09:54 2009-12-15 Show GitHub Exploit DB Packet Storm
257002 7.6 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox/SeaMonkey における任意の JavaScript を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3986 2010-01-29 09:54 2009-12-15 Show GitHub Exploit DB Packet Storm
257003 6.8 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox/SeaMonkey におけるコンテンツを偽装される脆弱性 CWE-Other
その他
CVE-2009-3985 2010-01-29 09:53 2009-12-15 Show GitHub Exploit DB Packet Storm
257004 6.8 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox/SeaMonkey における http URL または file URL の SSL インジケータを偽装される脆弱性 CWE-Other
その他
CVE-2009-3984 2010-01-29 09:53 2009-12-15 Show GitHub Exploit DB Packet Storm
257005 6.8 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox/SeaMonkey における認証されたリクエストを任意のアプリケーションに送信される脆弱性 CWE-Other
その他
CVE-2009-3983 2010-01-29 09:53 2009-12-15 Show GitHub Exploit DB Packet Storm
257006 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の libtheora における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2009-3389 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
257007 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の liboggplay における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-3388 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
257008 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-3982 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
257009 9.3 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-3981 2010-01-28 12:16 2009-12-15 Show GitHub Exploit DB Packet Storm
257010 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-3980 2010-01-28 12:15 2009-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214131 5.9 MEDIUM
Network
netgear r6120_firmware
r6220_firmware
r6350_firmware
r6400_firmware
r6800_firmware
r6850_firmware
r7000p_firmware
r7800_firmware
r8000_firmware
r9000_firmware
rax120_firmware
Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibly R6120, R7800, R6220, R8000, R6350, R9000, R6400,… CWE-295
Improper Certificate Validation 
CVE-2020-13245 2024-11-21 14:00 2020-05-29 Show GitHub Exploit DB Packet Storm
214132 5.5 MEDIUM
Local
qemu
canonical
debian
qemu
ubuntu_linux
debian_linux
sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS user can crash the QEMU process. CWE-125
Out-of-bounds Read
CVE-2020-13253 2024-11-21 14:00 2020-05-28 Show GitHub Exploit DB Packet Storm
214133 8.1 HIGH
Network
schedmd
fedoraproject
opensuse
debian
slurm
fedora
leap
debian_linux
Slurm 19.05.x before 19.05.7 and 20.02.x before 20.02.3, in the rare case where Message Aggregation is enabled, allows Authentication Bypass via an Alternate Path or Channel. A race condition allows … NVD-CWE-Other
CVE-2020-12693 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214134 6.1 MEDIUM
Network
contentful python_example Contentful through 2020-05-21 for Python allows reflected XSS, as demonstrated by the api parameter to the-example-app.py. CWE-79
Cross-site Scripting
CVE-2020-13258 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214135 8.2 HIGH
Network
libexif_project
debian
canonical
opensuse
libexif
debian_linux
ubuntu_linux
leap
An issue was discovered in libexif before 0.6.22. Use of uninitialized memory in EXIF Makernote handling could lead to crashes and potential use-after-free conditions. CWE-908
 Use of Uninitialized Resource
CVE-2020-13113 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214136 9.8 CRITICAL
Network
pango virtual_private_network_software_development_kit An issue was discovered in AnchorFree VPN SDK before 1.3.3.218. The VPN SDK service takes certain executable locations over a socket bound to localhost. Binding to the socket and providing a path whe… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-12828 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214137 7.5 HIGH
Network
libexif_project
canonical
opensuse
libexif
ubuntu_linux
leap
An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-13114 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214138 9.1 CRITICAL
Network
libexif_project
debian
canonical
opensuse
libexif
debian_linux
ubuntu_linux
leap
An issue was discovered in libexif before 0.6.22. Several buffer over-reads in EXIF MakerNote handling could lead to information disclosure and crashes. This is different from CVE-2020-0093. CWE-125
Out-of-bounds Read
CVE-2020-13112 2024-11-21 14:00 2020-05-22 Show GitHub Exploit DB Packet Storm
214139 8.8 HIGH
Network
centreon centreon Centreon before 19.04.15 allows remote attackers to execute arbitrary OS commands by placing shell metacharacters in RRDdatabase_status_path (via a main.get.php request) and then visiting the include… CWE-78
OS Command 
CVE-2020-13252 2024-11-21 14:00 2020-05-21 Show GitHub Exploit DB Packet Storm
214140 8.8 HIGH
Network
mariadb
opensuse
fedoraproject
connector\/c
leap
fedora
libmariadb/mariadb_lib.c in MariaDB Connector/C before 3.1.8 does not properly validate the content of an OK packet received from a server. NOTE: although mariadb_lib.c was originally based on code s… NVD-CWE-noinfo
CVE-2020-13249 2024-11-21 14:00 2020-05-21 Show GitHub Exploit DB Packet Storm