Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224671 4 警告 Fedora Project
レッドハット
- Red Hat Directory Server および 389 Directory Server における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2219 2013-08-2 15:14 2013-07-30 Show GitHub Exploit DB Packet Storm
224672 4.3 警告 Beanbag - Review Board の htdocs/media/rb/js/reviews.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2209 2013-08-2 15:06 2013-06-22 Show GitHub Exploit DB Packet Storm
224673 6 警告 The Foreman
レッドハット
- Foreman の Bookmarks コントローラの create メソッドにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-2121 2013-08-2 14:11 2013-06-7 Show GitHub Exploit DB Packet Storm
224674 6 警告 The Foreman
レッドハット
- Foreman の app/controllers/users_controller.rb の create メソッドにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2113 2013-08-2 14:06 2013-06-7 Show GitHub Exploit DB Packet Storm
224675 7.1 危険 Novell
CollabNet, Inc.
Apache Software Foundation
- Apache Subversion における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2088 2013-08-1 18:01 2013-07-4 Show GitHub Exploit DB Packet Storm
224676 4.3 警告 Western Digital Corporation - 複数の Western Digital My Net ルータ製品のファームウェアにおける平文の管理パスワードを破られる脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-5006 2013-08-1 17:36 2013-07-18 Show GitHub Exploit DB Packet Storm
224677 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2886 2013-08-1 16:33 2013-07-30 Show GitHub Exploit DB Packet Storm
224678 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2885 2013-08-1 16:31 2013-07-30 Show GitHub Exploit DB Packet Storm
224679 7.5 危険 Google - Google Chrome の DOM の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2884 2013-08-1 16:30 2013-07-30 Show GitHub Exploit DB Packet Storm
224680 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2883 2013-08-1 16:29 2013-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199111 7.5 HIGH
Network
citrix application_delivery_controller_firmware
netscaler_gateway_firmware
Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial of service attack. CWE-20
 Improper Input Validation 
CVE-2020-8187 2024-11-21 14:38 2020-07-11 Show GitHub Exploit DB Packet Storm
199112 9.8 CRITICAL
Network
devcert_project devcert A command injection vulnerability in the `devcert` module may lead to remote code execution when users of the module pass untrusted input to the `certificateFor` function. CWE-78
OS Command 
CVE-2020-8186 2024-11-21 14:38 2020-07-11 Show GitHub Exploit DB Packet Storm
199113 4.3 MEDIUM
Network
nextcloud contacts A missing file type check in Nextcloud Contacts 3.2.0 allowed a malicious user to upload any file as avatars. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-8181 2024-11-21 14:38 2020-07-11 Show GitHub Exploit DB Packet Storm
199114 9.8 CRITICAL
Network
phpzag phpzag SQL injection with start and length parameters in Records.php for phpzag live add edit delete data tables records with ajax php mysql CWE-89
SQL Injection
CVE-2020-8521 2024-11-21 14:38 2020-07-8 Show GitHub Exploit DB Packet Storm
199115 9.8 CRITICAL
Network
phpzag phpzag SQL injection in order and column parameters in Records.php for phpzag live add edit delete data tables records with ajax php mysql CWE-89
SQL Injection
CVE-2020-8520 2024-11-21 14:38 2020-07-8 Show GitHub Exploit DB Packet Storm
199116 9.8 CRITICAL
Network
phpzag phpzag SQL injection with the search parameter in Records.php for phpzag live add edit delete data tables records with ajax php mysql CWE-89
SQL Injection
CVE-2020-8519 2024-11-21 14:38 2020-07-8 Show GitHub Exploit DB Packet Storm
199117 8.8 HIGH
Network
ui unifi_protect_firmware We have recently released new version of UniFi Protect firmware v1.13.3 and v1.14.10 for Unifi Cloud Key Gen2 Plus and UniFi Dream Machine Pro/UNVR respectively that fixes vulnerabilities found on Pr… CWE-78
OS Command 
CVE-2020-8188 2024-11-21 14:38 2020-07-3 Show GitHub Exploit DB Packet Storm
199118 6.5 MEDIUM
Network
rubyonrails
fedoraproject
rails
fedora
A denial of service vulnerability exists in Rails <6.0.3.2 that allowed an untrusted user to run any pending migrations on a Rails app running in production. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8185 2024-11-21 14:38 2020-07-3 Show GitHub Exploit DB Packet Storm
199119 4.1 MEDIUM
Network
nextcloud deck Improper access control in Nextcloud Deck 1.0.0 allowed an attacker to inject tasks into other users decks. CWE-269
 Improper Privilege Management
CVE-2020-8179 2024-11-21 14:38 2020-07-3 Show GitHub Exploit DB Packet Storm
199120 6.1 MEDIUM
Network
shopify koa-shopify-auth A cross-site scripting vulnerability exists in koa-shopify-auth v3.1.61-v3.1.62 that allows an attacker to inject JS payloads into the `shop` parameter on the `/shopify/auth/enable_cookies` endpoint. CWE-79
Cross-site Scripting
CVE-2020-8176 2024-11-21 14:38 2020-07-3 Show GitHub Exploit DB Packet Storm