Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132311 4.6 警告
Adjacent
MongoDB Inc. Ops Manager MongoDB Ops Manager における重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2021-20335 2021-11-9 18:04 2021-01-27 Show GitHub Exploit DB Packet Storm
132312 9.6 緊急
Network
ftp-srv project ftp-srv ftp-srv におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2020-26299 2021-11-9 18:04 2020-12-16 Show GitHub Exploit DB Packet Storm
132313 8.3 重要
Network
ownCloud ownCloud ownCloud におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2020-10252 2021-11-9 18:03 2020-02-28 Show GitHub Exploit DB Packet Storm
132314 7.8 重要
Local
tribe29 Checkmk Checkmk における脆弱性 CWE-Other
その他
CVE-2020-24908 2021-11-9 18:03 2020-08-31 Show GitHub Exploit DB Packet Storm
132315 7.5 重要
Network
scrapbox-parser project scrapbox-parser @progfay/scrapbox-parser におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2021-27405 2021-11-9 18:03 2021-02-7 Show GitHub Exploit DB Packet Storm
132316 6.1 警告
Network
Chamilo Association Chamilo Chamilo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-26746 2021-11-9 18:03 2021-01-21 Show GitHub Exploit DB Packet Storm
132317 7.8 重要
Local
Amaze File Manager Amaze File Manager Amaze File Manager における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2020-36246 2021-11-9 18:03 2020-11-29 Show GitHub Exploit DB Packet Storm
132318 6.1 警告
Network
ASUSTeK Computer Inc. Askey RTF8115VW ファームウェア Askey RTF8115VW におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2021-27404 2021-11-9 18:03 2021-02-18 Show GitHub Exploit DB Packet Storm
132319 6.1 警告
Network
ASUSTeK Computer Inc. Askey RTF8115VW ファームウェア Askey RTF8115VW におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-27403 2021-11-9 18:03 2021-02-18 Show GitHub Exploit DB Packet Storm
132320 7.8 重要
Local
AIDA64 AIDA64 FinalWire Ltd AIDA64 Engineer における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-19513 2021-11-9 18:03 2020-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
131 7.6 HIGH
Network
- - ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 contain an authenticated server-side request forgery (SSRF) in the rich-text widget import flow.… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45012 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
132 7.3 HIGH
Network
- - ApostropheCMS is an open-source Node.js content management system. Version 4.29.0 has a stored cross-site scripting vulnerability in the image widget functionality. A user with the Editor role can co… New CWE-79
CWE-116
Cross-site Scripting
 Improper Encoding or Escaping of Output
CVE-2026-45011 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
133 9.3 CRITICAL
Network
- - ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer with a clear API. Under the default configuration, versions of `sanitize-html` pr… New CWE-79
Cross-site Scripting
CVE-2026-44990 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
134 7.5 HIGH
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, chat events for public c… New CWE-200
Information Exposure
CVE-2026-44786 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
135 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, the AI "explain" helper … New CWE-200
Information Exposure
CVE-2026-44785 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
136 6.5 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, group owners who are not… New CWE-200
Information Exposure
CVE-2026-44784 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
137 5.4 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, a flaw in how replies to… New CWE-284
Improper Access Control
CVE-2026-44783 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
138 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, GroupPostSerializer decl… New CWE-200
Information Exposure
CVE-2026-44782 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
139 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, ReviewableQueuedPostSeri… New CWE-200
Information Exposure
CVE-2026-44780 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
140 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, bot debug endpoints disc… New CWE-200
Information Exposure
CVE-2026-44779 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm