Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224761 1.9 注意 OpenStack - 複数の OpenStack 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4469 2013-11-6 11:52 2013-11-1 Show GitHub Exploit DB Packet Storm
224762 6.8 警告 Novell - Novell ZENworks Configuration Management における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-6347 2013-11-6 11:43 2013-10-28 Show GitHub Exploit DB Packet Storm
224763 6 警告 NAS4Free - NAS4Free にコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-3631 2013-11-6 11:33 2013-10-30 Show GitHub Exploit DB Packet Storm
224764 7.8 危険 Shenzhen TVT Digital Technology Co., Ltd. - TVT TD-2308SS-B にディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-6023 2013-11-6 11:27 2013-10-25 Show GitHub Exploit DB Packet Storm
224765 6.8 警告 Novell - Novell ZENworks Configuration Management の ZCC ページにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6346 2013-11-6 11:23 2013-10-28 Show GitHub Exploit DB Packet Storm
224766 10 危険 Novell - Novell ZENworks Configuration Management の ZCC ページにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-6345 2013-11-6 11:20 2013-10-28 Show GitHub Exploit DB Packet Storm
224767 4.3 警告 Novell - Novell ZENworks Configuration Management の ZCC ページにおけるクロスフレームスクリプティング攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6344 2013-11-6 10:54 2013-10-28 Show GitHub Exploit DB Packet Storm
224768 6.4 警告 Ruby-lang.org
Novell
- Ruby の DL および Fiddle における $SAFE レベルの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2065 2013-11-5 19:13 2013-05-14 Show GitHub Exploit DB Packet Storm
224769 5 警告 strongSwan - strongSWAN におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-6076 2013-11-5 19:02 2013-11-1 Show GitHub Exploit DB Packet Storm
224770 5 警告 strongSwan - strongSwan の utils/identification.c の compare_dn 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-6075 2013-11-5 18:54 2013-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211141 6.1 MEDIUM
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity… CWE-79
Cross-site Scripting
CVE-2020-24706 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
211142 8.8 HIGH
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24705 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
211143 6.1 MEDIUM
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.… CWE-79
Cross-site Scripting
CVE-2020-24704 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
211144 8.8 HIGH
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24703 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
211145 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-24599 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
211146 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect. CWE-601
Open Redirect
CVE-2020-24598 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
211147 5.9 MEDIUM
Network
gnome
fedoraproject
geary
fedora
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not confi… CWE-295
Improper Certificate Validation 
CVE-2020-24661 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
211148 6.5 MEDIUM
Network
maltego maltego Maltego before 4.2.12 allows XXE attacks. CWE-611
XXE
CVE-2020-24656 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
211149 9.8 CRITICAL
Network
expo expo secure-store in Expo through 2.16.1 on iOS provides the insecure kSecAttrAccessibleAlwaysThisDeviceOnly policy when WHEN_UNLOCKED_THIS_DEVICE_ONLY is used. NVD-CWE-noinfo
CVE-2020-24653 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
211150 4.9 MEDIUM
Network
sonatype nexus In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user. CWE-522
 Insufficiently Protected Credentials
CVE-2020-24622 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm