Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225031 4.3 警告 Messaging - TYPO3 用 UserTask Center、Messaging エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4749 2013-07-3 17:55 2013-01-28 Show GitHub Exploit DB Packet Storm
225032 7.5 危険 Georg Ringer - TYPO3 用 News system エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4748 2013-07-3 17:55 2013-01-11 Show GitHub Exploit DB Packet Storm
225033 4.3 警告 Kasper Skarhoj - TYPO3 用 Accessible browse results for indexed search エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4747 2013-07-3 17:54 2013-06-3 Show GitHub Exploit DB Packet Storm
225034 4.3 警告 Kurt Gusbeth - TYPO3 用 My quiz and poll エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4746 2013-07-3 17:53 2013-02-19 Show GitHub Exploit DB Packet Storm
225035 4.3 警告 Kurt Gusbeth - TYPO3 用 myquizpoll エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4745 2013-07-3 17:52 2008-06-7 Show GitHub Exploit DB Packet Storm
225036 4.3 警告 Sebastian Bergmann - TYPO3 用 PHPUnit エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4744 2013-07-3 17:52 2013-01-11 Show GitHub Exploit DB Packet Storm
225037 6.8 警告 X.Org Foundation
Openchrome
- Openchrome の X.org libchromeXvMC および libchromeXvMCPro における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-1994 2013-07-3 16:38 2013-05-23 Show GitHub Exploit DB Packet Storm
225038 3.5 注意 TYPO3 Association - TYPO3 の function menu API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6148 2013-07-3 16:05 2012-11-8 Show GitHub Exploit DB Packet Storm
225039 3.5 注意 TYPO3 Association - TYPO3 の Backend API の tree render API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6147 2013-07-3 16:05 2012-11-8 Show GitHub Exploit DB Packet Storm
225040 3.5 注意 TYPO3 Association - TYPO3 の Backend History モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6145 2013-07-3 16:04 2012-11-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211981 7.8 HIGH
Local
iobit iobit_unlocker The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to delete, move, or copy arbitrary files via IOCTL code 0x222124. NVD-CWE-noinfo
CVE-2020-14975 2024-11-21 14:04 2020-06-24 Show GitHub Exploit DB Packet Storm
211982 7.1 HIGH
Local
iobit iobit_unlocker The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to unlock a file and kill processes (even ones running as SYSTEM) that hold a handle, via IOCTL code 0x222124. NVD-CWE-noinfo
CVE-2020-14974 2024-11-21 14:04 2020-06-24 Show GitHub Exploit DB Packet Storm
211983 7.8 HIGH
Local
pi-hole pi-hole Pi-hole through 5.0 allows code injection in piholedhcp (the Static DHCP Leases section) by modifying Teleporter backup files and then restoring them. This occurs in settings.php. To exploit this, an… CWE-862
 Missing Authorization
CVE-2020-14971 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211984 4.8 MEDIUM
Network
tp-link tl-wr740n_firmware
tl-wr740nd_firmware
On TP-Link TL-WR740N v4 and TL-WR740ND v4 devices, an attacker with access to the admin panel can inject HTML code and change the HTML context of the target pages and stations in the access-control s… CWE-79
Cross-site Scripting
CVE-2020-14965 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211985 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor2960_firmware
vigor3900_firmware
A stack-based buffer overflow on DrayTek Vigor2960, Vigor3900, and Vigor300B devices before 1.5.1.1 allows remote attackers to execute arbitrary code via the formuserphonenumber parameter in an authu… CWE-787
 Out-of-bounds Write
CVE-2020-14993 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211986 7.5 HIGH
Network
herac tuxguitar An issue was discovered in io/gpx/GPXDocumentReader.java in TuxGuitar 1.5.4. It uses misconfigured XML parsers, leading to XXE while loading GP6 (.gpx) and GP7 (.gp) tablature files. CWE-611
XXE
CVE-2020-14940 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211987 7.8 HIGH
Local
freedroid freedroidrpg An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, l… CWE-20
 Improper Input Validation 
CVE-2020-14939 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211988 9.8 CRITICAL
Network
freedroid freedroidrpg An issue was discovered in map.c in FreedroidRPG 1.0rc2. It assumes lengths of data sets read from saved game files. It copies data from a file into a fixed-size heap-allocated buffer without size ve… CWE-787
 Out-of-bounds Write
CVE-2020-14938 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211989 4.3 MEDIUM
Network
globalradar bsa_radar downloadFile.ashx in the Administrator section of the Surveillance module in Global RADAR BSA Radar 1.6.7234.24750 and earlier allows users to download transaction files. When downloading the files, … CWE-22
Path Traversal
CVE-2020-14946 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211990 8.8 HIGH
Network
globalradar bsa_radar A privilege escalation vulnerability exists within Global RADAR BSA Radar 1.6.7234.24750 and earlier that allows an authenticated, low-privileged user to escalate their privileges to administrator ri… NVD-CWE-noinfo
CVE-2020-14945 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm