Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
206551 4 警告 Echo project - MediaWiki 用 Echo エクステンションにおける非リビジョンベースの通知内の隠れたユーザ名を見られる脆弱性 CWE-200
情報漏えい
CVE-2015-8007 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206552 4.3 警告 PageTriage project - MediaWiki 用 PageTriage エクステンションの PageTriage ツールバーにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8006 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206553 5 警告 MediaWiki - MediaWiki におけるインストールパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8005 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206554 4 警告 MediaWiki - MediaWiki における改訂制限を解除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8004 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206555 4 警告 MediaWiki - MediaWiki における脆弱性 CWE-399
リソース管理の問題
CVE-2015-8003 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206556 6.8 警告 MediaWiki - MediaWiki のチャンクアップロード API におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8002 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206557 3.5 注意 MediaWiki - MediaWiki のチャンクアップロード API におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-8001 2015-11-11 14:22 2015-10-16 Show GitHub Exploit DB Packet Storm
206558 2.1 注意 Novell
kernel.org
- util-linux の colcrt の text-utils/colcrt.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-5218 2015-11-11 13:55 2015-08-10 Show GitHub Exploit DB Packet Storm
206559 4.3 警告 Openswan
Libreswan Project
- Libreswan および Openswan の pluto IKE デーモンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2015-3240 2015-11-11 12:23 2015-08-27 Show GitHub Exploit DB Packet Storm
206560 10 危険 Google - Google Picasa における整数オーバーフローの脆弱性 CWE-119
CWE-189
CVE-2015-8096 2015-11-11 12:19 2015-10-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
81 8.2 HIGH
Network
- - Supsystic Membership 1.4.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'search' and 'sidx' p… New CWE-89
SQL Injection
CVE-2020-37244 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
82 8.2 HIGH
Network
- - Supsystic Pricing Table 1.8.7 contains an SQL injection vulnerability in the 'sidx' GET parameter that allows unauthenticated attackers to execute arbitrary SQL queries through the getListForTbl acti… New CWE-89
SQL Injection
CVE-2020-37243 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
83 8.2 HIGH
Network
- - Supsystic Ultimate Maps 1.1.12 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'sidx' GET parame… New CWE-89
SQL Injection
CVE-2020-37242 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
84 5.3 MEDIUM
Network
- - bloofoxCMS 0.5.2.1 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions by tricking logged-in users into visiting malicious pages. Attackers can… New CWE-352
 Origin Validation Error
CVE-2020-37241 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
85 6.4 MEDIUM
Network
- - Queue Management System 4.0.0 contains a stored cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts through user creation fields. Attackers can ins… New CWE-79
Cross-site Scripting
CVE-2020-37240 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
86 9.8 CRITICAL
Network
- - libbabl 0.1.62 contains a broken double free detection vulnerability that allows attackers to bypass memory safety checks by exploiting signature overwriting in freed chunks. Attackers can call babl_… New CWE-415
 Double Free
CVE-2020-37239 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
87 6.4 MEDIUM
Network
- - CMS Made Simple 2.2.15 contains a stored cross-site scripting vulnerability that allows authenticated users with Content Manager access to inject malicious scripts through SVG file uploads. Attackers… New CWE-79
Cross-site Scripting
CVE-2020-37238 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
88 6.4 MEDIUM
Network
- - Composr CMS 10.0.34 contains a persistent cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts through the banner management interface. Attackers wi… New CWE-79
Cross-site Scripting
CVE-2020-37237 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
89 6.4 MEDIUM
Network
- - NewsLister contains an authenticated persistent cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts through the title parameter in the news additio… New CWE-79
Cross-site Scripting
CVE-2020-37236 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm
90 6.4 MEDIUM
Network
- - WordPress Theme Wibar 1.1.8 contains a stored cross-site scripting vulnerability in the Brand component that allows authenticated users to inject malicious scripts by manipulating the Logo URL parame… New CWE-79
Cross-site Scripting
CVE-2020-37235 2026-05-17 01:16 2026-05-17 Show GitHub Exploit DB Packet Storm