Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224341 7.5 危険 General Electric Company - GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY および Proficy Process Systems with CIMPLICITY におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0750 2014-01-28 17:37 2014-01-21 Show GitHub Exploit DB Packet Storm
224342 5 警告 baseurl.org - yum の yum-cron/yum-cron.py の installUpdates 関数における RMP パッケージの署名の制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0022 2014-01-28 17:02 2014-01-14 Show GitHub Exploit DB Packet Storm
224343 5.5 警告 シスコシステムズ - Cisco Secure Access Control System のポータルインターフェースにおけるセッションをハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0678 2014-01-28 16:49 2014-01-27 Show GitHub Exploit DB Packet Storm
224344 4.3 警告 シスコシステムズ - Cisco Video Surveillance 5000 HD IP Dome カメラの Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0673 2014-01-28 16:32 2014-01-27 Show GitHub Exploit DB Packet Storm
224345 7.5 危険 Josh Fradley - Burden の login.php の "remember me" 機能における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-7137 2014-01-28 16:19 2013-12-18 Show GitHub Exploit DB Packet Storm
224346 4.3 警告 ヤフー株式会社 - FireFox 用 Yahoo! Toolbar プラグインの clickstream.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6853 2014-01-28 16:15 2014-01-14 Show GitHub Exploit DB Packet Storm
224347 3.6 注意 Secunia - Secunia CSI Agent における設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5364 2014-01-28 16:13 2014-01-10 Show GitHub Exploit DB Packet Storm
224348 6.8 警告 マイクロソフト - Android 用 Microsoft Bing アプリケーションにおける任意の APK ファイルをインストールされる脆弱性 CWE-94
コード・インジェクション
CVE-2014-1670 2014-01-28 15:48 2014-01-21 Show GitHub Exploit DB Packet Storm
224349 9.3 危険 SmartBear Software - SoapUI の WSDL/WADL インポート機能における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1202 2014-01-28 15:38 2014-01-14 Show GitHub Exploit DB Packet Storm
224350 4.3 警告 レッドハット - libvirt における ACL の domain:getattr および connect:search_domains の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0028 2014-01-28 10:57 2014-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211151 9.8 CRITICAL
Network
cgal
fedoraproject
debian
computational_geometry_algorithms_library
fedora
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_2/PM_io_parser.h PM_io_parser::read_vertex() Face_of… - CVE-2020-28601 2024-11-21 14:22 2021-03-5 Show GitHub Exploit DB Packet Storm
211152 7.5 HIGH
Network
epignosishq efront A predictable seed vulnerability exists in the password reset functionality of Epignosis EfrontPro 5.2.21. By predicting the seed it is possible to generate the correct password reset 1-time token. A… CWE-335
 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG)
CVE-2020-28597 2024-11-21 14:22 2021-03-4 Show GitHub Exploit DB Packet Storm
211153 6.5 MEDIUM
Network
slic3r
fedoraproject
libslic3r
fedora
An out-of-bounds read vulnerability exists in the AMF File AMFParserContext::endElement() functionality of Slic3r libslic3r 1.3.0 and Master Commit 92abbc42. A specially crafted AMF file can lead to … CWE-125
Out-of-bounds Read
CVE-2020-28591 2024-11-21 14:22 2021-03-4 Show GitHub Exploit DB Packet Storm
211154 7.8 HIGH
Local
saltstack
fedoraproject
debian
salt
fedora
debian_linux
An issue was discovered in SaltStack Salt before 3002.5. The minion's restartcheck is vulnerable to command injection via a crafted process name. This allows for a local privilege escalation by any u… CWE-77
Command Injection
CVE-2020-28243 2024-11-21 14:22 2021-02-27 Show GitHub Exploit DB Packet Storm
211155 9.1 CRITICAL
Network
bestit amazon_pay best it Amazon Pay Plugin before 9.4.2 for Shopware exposes Sensitive Information to an Unauthorized Actor. CWE-200
Information Exposure
CVE-2020-28199 2024-11-21 14:22 2021-02-27 Show GitHub Exploit DB Packet Storm
211156 7.8 HIGH
Local
openscad
fedoraproject
openscad
fedora
A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attack… CWE-787
 Out-of-bounds Write
CVE-2020-28599 2024-11-21 14:22 2021-02-25 Show GitHub Exploit DB Packet Storm
211157 7.8 HIGH
Local
softmaker planmaker_2021 A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object that is smaller than the size used for the copy, whic… CWE-787
 Out-of-bounds Write
CVE-2020-28587 2024-11-21 14:22 2021-02-24 Show GitHub Exploit DB Packet Storm
211158 9.8 CRITICAL
Network
geojson2kml_project geojson2kml All versions of package geojson2kml are vulnerable to Command Injection via the index.js file. PoC: var a =require("geojson2kml"); a("./","& touch JHU",function(){}) CWE-78
OS Command 
CVE-2020-28429 2024-11-21 14:22 2021-02-24 Show GitHub Exploit DB Packet Storm
211159 8.8 HIGH
Network
png-img_project png-img An integer overflow in the PngImg::InitStorage_() function of png-img before 3.1.0 leads to an under-allocation of heap memory and subsequently an exploitable heap-based buffer overflow when loading … CWE-787
CWE-190
 Out-of-bounds Write
 Integer Overflow or Wraparound
CVE-2020-28248 2024-11-21 14:22 2021-02-20 Show GitHub Exploit DB Packet Storm
211160 8.8 HIGH
Network
smartstore smartstorenet An issue was discovered in SmartStoreNET before 4.1.0. Lack of Cross Site Request Forgery (CSRF) protection may lead to elevation of privileges (e.g., /admin/customer/create to create an admin accoun… CWE-352
 Origin Validation Error
CVE-2020-27997 2024-11-21 14:22 2021-02-20 Show GitHub Exploit DB Packet Storm