Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224401 4.3 警告 シスコシステムズ - Cisco MediaSense の Search and Play インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0670 2014-01-24 12:17 2014-01-22 Show GitHub Exploit DB Packet Storm
224402 6.8 警告 Seagate Technology LLC - Seagate BlackArmor NAS 220 デバイスのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6922 2014-01-23 18:35 2013-12-3 Show GitHub Exploit DB Packet Storm
224403 7.2 危険 レッドハット - Red Hat Enterprise Virtualization で使用される SPICE サービスにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2013-2152 2014-01-23 18:17 2013-06-10 Show GitHub Exploit DB Packet Storm
224404 3.2 注意 Linux NFS - nfs-utils の rpc-gssd におけるその他の制限ファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-1923 2014-01-23 18:13 2013-04-3 Show GitHub Exploit DB Packet Storm
224405 7.2 危険 レッドハット - Red Hat Enterprise Virtualization における権限を取得される脆弱性 CWE-Other
その他
CVE-2013-2151 2014-01-23 18:12 2013-06-10 Show GitHub Exploit DB Packet Storm
224406 9.3 危険 Lenovo - Lenovo Thinkpad Bluetooth with Enhanced Data Rate ソフトウェアにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-1361 2014-01-23 17:57 2013-01-15 Show GitHub Exploit DB Packet Storm
224407 5 警告 Simon McVittie - Telepathy Gabble の特定のハッシュアルゴリズムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2013-1769 2014-01-23 17:55 2013-03-4 Show GitHub Exploit DB Packet Storm
224408 5.8 警告 Plone Foundation - Plone の in_portal.py の URLTool クラスにおける allow_external_login_sites フィルタリングプロパティを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4200 2014-01-23 17:52 2013-06-18 Show GitHub Exploit DB Packet Storm
224409 5 警告 WordPress.org - WordPress の wp-admin/includes/class-wp-posts-list-table.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6635 2014-01-23 17:48 2012-06-15 Show GitHub Exploit DB Packet Storm
224410 6.4 警告 WordPress.org - WordPress の wp-admin/media-upload.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6634 2014-01-23 17:35 2012-06-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211101 7.8 HIGH
Local
exim exim Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow because get_stdinput allows unbounded reads that are accompanied by unbounded increases in a certain size variable. NOTE: exploitation … CWE-190
 Integer Overflow or Wraparound
CVE-2020-28009 2024-11-21 14:22 2021-05-6 Show GitHub Exploit DB Packet Storm
211102 7.8 HIGH
Local
exim exim Exim 4 before 4.94.2 allows Execution with Unnecessary Privileges. Because Exim operates as root in the spool directory (owned by a non-root user), an attacker can write to a /var/spool/exim4/input s… CWE-269
 Improper Privilege Management
CVE-2020-28008 2024-11-21 14:22 2021-05-6 Show GitHub Exploit DB Packet Storm
211103 7.8 HIGH
Local
exim exim Exim 4 before 4.94.2 allows Execution with Unnecessary Privileges. Because Exim operates as root in the log directory (owned by a non-root user), a symlink or hard link attack allows overwriting crit… CWE-59
Link Following
CVE-2020-28007 2024-11-21 14:22 2021-05-6 Show GitHub Exploit DB Packet Storm
211104 5.4 MEDIUM
Network
online_discussion_forum_project online_discussion_forum The messaging subsystem in the Online Discussion Forum 1.0 is vulnerable to XSS in the message body. An authenticated user can send messages to arbitrary users on the system that include javascript t… CWE-79
Cross-site Scripting
CVE-2020-28141 2024-11-21 14:22 2021-04-20 Show GitHub Exploit DB Packet Storm
211105 8.1 HIGH
Network
cosori cs158-af_firmware A unauthenticated backdoor exists in the configuration server functionality of Cosori Smart 5.8-Quart Air Fryer CS158-AF 1.1.0. A specially crafted JSON object can lead to code execution. An attacker… NVD-CWE-Other
CVE-2020-28593 2024-11-21 14:22 2021-04-15 Show GitHub Exploit DB Packet Storm
211106 9.8 CRITICAL
Network
cosori cs158-af_firmware A heap-based buffer overflow vulnerability exists in the configuration server functionality of the Cosori Smart 5.8-Quart Air Fryer CS158-AF 1.1.0. A specially crafted JSON object can lead to remote … CWE-787
 Out-of-bounds Write
CVE-2020-28592 2024-11-21 14:22 2021-04-15 Show GitHub Exploit DB Packet Storm
211107 5.4 MEDIUM
Network
lavalite lavalite Cross Site Scripting (XSS) in LavaLite 5.8.0 via the Address field. CWE-79
Cross-site Scripting
CVE-2020-28124 2024-11-21 14:22 2021-04-15 Show GitHub Exploit DB Packet Storm
211108 6.5 MEDIUM
Network
slic3r libslic3r An out-of-bounds read vulnerability exists in the Obj File TriangleMesh::TriangleMesh() functionality of Slic3r libslic3r 1.3.0 and Master Commit 92abbc42. A specially crafted obj file could lead to … CWE-125
Out-of-bounds Read
CVE-2020-28590 2024-11-21 14:22 2021-04-14 Show GitHub Exploit DB Packet Storm
211109 7.8 HIGH
Local
apple mac_os_x
macos
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.… CWE-787
 Out-of-bounds Write
CVE-2020-27952 2024-11-21 14:22 2021-04-3 Show GitHub Exploit DB Packet Storm
211110 7.8 HIGH
Local
apple ipados
iphone_os
watchos
This issue was addressed with improved checks. This issue is fixed in watchOS 6.3, iOS 12.5, iOS 14.3 and iPadOS 14.3, watchOS 7.2. Unauthorized code execution may lead to an authentication policy vi… NVD-CWE-noinfo
CVE-2020-27951 2024-11-21 14:22 2021-04-3 Show GitHub Exploit DB Packet Storm