Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258751 10 危険 IntelliCom Innovation AB - IntelliCom NetBiter デバイスにおけるデフォルトパスワードの問題 CWE-255
証明書・パスワード管理
CVE-2009-4463 2010-04-27 16:10 2010-04-7 Show GitHub Exploit DB Packet Storm
258752 9.3 危険 Foxit Software Inc - Foxit Reader に任意のコード実行が可能な脆弱性 CWE-94
コード・インジェクション
CVE-2010-1239 2010-04-27 16:10 2010-04-6 Show GitHub Exploit DB Packet Storm
258753 10 危険 ヒューレット・パッカード - Broadcom NetXtreme 管理用ファームウェアにバッファオーバーフローの脆弱性 CWE-noinfo
情報不足
CVE-2010-0104 2010-04-27 16:09 2010-03-31 Show GitHub Exploit DB Packet Storm
258754 6.8 警告 アップル - AirPort Utility におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2822 2010-04-27 16:09 2010-03-31 Show GitHub Exploit DB Packet Storm
258755 9.3 危険 アップル - Apple Safari の ColorSync における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0040 2010-04-27 15:20 2010-03-15 Show GitHub Exploit DB Packet Storm
258756 4 警告 Squid-cache.org
サイバートラスト株式会社
ターボリナックス
レッドハット
- Squid の lib/rfc1035.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0308 2010-04-27 15:20 2010-01-28 Show GitHub Exploit DB Packet Storm
258757 6.8 警告 アップル - Apple Mac OS X の QuickDraw Manager におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2837 2010-04-27 15:20 2009-11-9 Show GitHub Exploit DB Packet Storm
258758 5 警告 Squid-cache.org
サイバートラスト株式会社
ターボリナックス
レッドハット
- Squid の strListGetItem 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-2855 2010-04-27 15:19 2009-08-18 Show GitHub Exploit DB Packet Storm
258759 4.3 警告 アップル
サイバートラスト株式会社
LibTIFF
サン・マイクロシステムズ
レッドハット
- libtiff の LZWDecodeCompat 関数におけるバッファアンダーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2285 2010-04-27 15:19 2009-07-1 Show GitHub Exploit DB Packet Storm
258760 4.3 警告 サイバートラスト株式会社
レッドハット
- Red Hat および MIRACLE LINUX の sendmail におけるメール送信元を偽装される脆弱性 - CVE-2006-7176 2010-04-27 15:18 2007-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212721 7.8 HIGH
Local
openzfs openzfs OpenZFS before 2.0.0-rc1, when used on FreeBSD, allows execute permissions for all directories. CWE-863
 Incorrect Authorization
CVE-2020-24716 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
212722 6.1 MEDIUM
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity… CWE-79
Cross-site Scripting
CVE-2020-24706 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
212723 8.8 HIGH
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24705 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
212724 6.1 MEDIUM
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.… CWE-79
Cross-site Scripting
CVE-2020-24704 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
212725 8.8 HIGH
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24703 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
212726 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-24599 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
212727 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect. CWE-601
Open Redirect
CVE-2020-24598 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
212728 5.9 MEDIUM
Network
gnome
fedoraproject
geary
fedora
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not confi… CWE-295
Improper Certificate Validation 
CVE-2020-24661 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
212729 6.5 MEDIUM
Network
maltego maltego Maltego before 4.2.12 allows XXE attacks. CWE-611
XXE
CVE-2020-24656 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
212730 9.8 CRITICAL
Network
expo expo secure-store in Expo through 2.16.1 on iOS provides the insecure kSecAttrAccessibleAlwaysThisDeviceOnly policy when WHEN_UNLOCKED_THIS_DEVICE_ONLY is used. NVD-CWE-noinfo
CVE-2020-24653 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm