Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224441 4 警告 シスコシステムズ - Cisco Unified Communications Manager のディザスタリカバリシステムコンポーネントにおける重要なデバイス情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-6978 2013-12-25 13:41 2013-12-18 Show GitHub Exploit DB Packet Storm
224442 - - ヒューレット・パッカード - ** 削除 ** HP Autonomy Ultraseek におけるクロスサイトスクリプティングの脆弱性 - CVE-2013-6196 2013-12-25 13:40 2013-12-19 Show GitHub Exploit DB Packet Storm
224443 4.9 警告 IBM - IBM Sterling B2B Integrator および Sterling File Gateway におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-5407 2013-12-25 12:34 2013-12-4 Show GitHub Exploit DB Packet Storm
224444 5 警告 IBM - IBM WebSphere Portal における重要なコンポーネント情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6723 2013-12-25 12:31 2013-12-20 Show GitHub Exploit DB Packet Storm
224445 4.3 警告 IBM - IBM WebSphere Portal の Web Content Manager UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6328 2013-12-25 12:30 2013-12-20 Show GitHub Exploit DB Packet Storm
224446 4.3 警告 IBM - IBM WebSphere Portal における重要なプロパティ情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6316 2013-12-25 12:30 2013-12-20 Show GitHub Exploit DB Packet Storm
224447 4.3 警告 IBM - IBM Security Access Manager for Enterprise Single Sign-On の IMS サーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5421 2013-12-25 12:29 2013-12-20 Show GitHub Exploit DB Packet Storm
224448 4.9 警告 IBM - IBM WebSphere Portal におけるデータを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4012 2013-12-25 12:29 2013-12-20 Show GitHub Exploit DB Packet Storm
224449 4.3 警告 IBM - IBM Sterling B2B Integrator および Sterling File Gateway における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-5413 2013-12-25 12:27 2013-12-4 Show GitHub Exploit DB Packet Storm
224450 4.3 警告 IBM - IBM Sterling B2B Integrator および Sterling File Gateway におけるリンクを挿入される脆弱性 CWE-20
不適切な入力確認
CVE-2013-5411 2013-12-25 12:27 2013-12-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211371 9.8 CRITICAL
Network
systeminformation systeminformation npm package systeminformation before version 4.30.5 is vulnerable to Prototype Pollution leading to Command Injection. The issue was fixed with a rewrite of shell sanitations to avoid prototyper poll… CWE-78
OS Command 
CVE-2020-26245 2024-11-21 14:19 2020-11-28 Show GitHub Exploit DB Packet Storm
211372 7.5 HIGH
Network
nanopb_project nanopb Nanopb is a small code-size Protocol Buffers implementation. In Nanopb before versions 0.4.4 and 0.3.9.7, decoding specifically formed message can leak memory if dynamic allocation is enabled and an … - CVE-2020-26243 2024-11-21 14:19 2020-11-26 Show GitHub Exploit DB Packet Storm
211373 6.5 MEDIUM
Network
glpi-project glpi GLPI stands for Gestionnaire Libre de Parc Informatique and it is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. I… - CVE-2020-26212 2024-11-21 14:19 2020-11-26 Show GitHub Exploit DB Packet Storm
211374 7.5 HIGH
Network
ethereum go_ethereum Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.18, there is a Denial-of-service (crash) during block processing. This is fixed in 1… NVD-CWE-noinfo
CVE-2020-26242 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211375 7.1 HIGH
Network
ethereum go_ethereum Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. This is a Consensus vulnerability in Geth before version 1.9.17 which can be used to cause a chain-split where … - CVE-2020-26241 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211376 7.5 HIGH
Network
ethereum go_ethereum Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. An ethash mining DAG generation flaw in Geth before version 1.9.24 could cause miners to erroneously calculate … CWE-682
 Incorrect Calculation
CVE-2020-26240 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211377 8.1 HIGH
Network
cron-utils_project cron-utils Cron-utils is a Java library to parse, validate, migrate crons as well as get human readable descriptions for them. In cron-utils before version 9.1.3, a template Injection vulnerability is present. … - CVE-2020-26238 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211378 5.4 MEDIUM
Network
jupyter jupyter_server Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server could redirect the browser to a different website. All jupyter servers are techn… - CVE-2020-26232 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211379 8.7 HIGH
Network
highlightjs
debian
oracle
highlight.js
debian_linux
mysql_enterprise_monitor
Highlight.js is a syntax highlighter written in JavaScript. Highlight.js versions before 9.18.2 and 10.1.2 are vulnerable to Prototype Pollution. A malicious HTML code block can be crafted that will … - CVE-2020-26237 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm
211380 5.3 MEDIUM
Network
time_project time In Rust time crate from version 0.2.7 and before version 0.2.23, unix-like operating systems may segfault due to dereferencing a dangling pointer in specific circumstances. This requires the user to … CWE-476
 NULL Pointer Dereference
CVE-2020-26235 2024-11-21 14:19 2020-11-25 Show GitHub Exploit DB Packet Storm