Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225071 5 警告 Yahoo! - iOS 用 Yahoo! Tumblr における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4873 2013-07-22 16:10 2013-07-16 Show GitHub Exploit DB Packet Storm
225072 6.9 警告 Google - Google Glass における設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4872 2013-07-22 16:09 2013-07-17 Show GitHub Exploit DB Packet Storm
225073 6.8 警告 オートデスク株式会社 - 複数の Autodesk 製品における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3665 2013-07-22 16:08 2013-07-10 Show GitHub Exploit DB Packet Storm
225074 4.3 警告 オラクル - Oracle Enterprise Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3791 2013-07-22 12:01 2013-07-16 Show GitHub Exploit DB Packet Storm
225075 7.5 危険 Ubiquiti Networks - Ubiquiti UBNT AirCam の airVision ファームウェアにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1606 2013-07-22 09:41 2013-06-11 Show GitHub Exploit DB Packet Storm
225076 5 警告 シスコシステムズ - Cisco 9900 IP phones における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3426 2013-07-22 09:41 2013-07-17 Show GitHub Exploit DB Packet Storm
225077 6.8 警告 シスコシステムズ - Cisco Identity Services Engine の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3420 2013-07-22 09:40 2013-07-17 Show GitHub Exploit DB Packet Storm
225078 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager における権限を取得される脆弱性 CWE-Other
その他
CVE-2013-3434 2013-07-22 09:39 2013-07-17 Show GitHub Exploit DB Packet Storm
225079 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager における権限を取得される脆弱性 CWE-Other
その他
CVE-2013-3433 2013-07-22 09:38 2013-07-17 Show GitHub Exploit DB Packet Storm
225080 6.5 警告 シスコシステムズ - Cisco Unified Communications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3412 2013-07-22 09:38 2013-07-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212051 8.7 HIGH
Network
basercms basercms baserCMS before version 4.4.1 is vulnerable to Cross-Site Scripting. Arbitrary JavaScript may be executed by entering a crafted nickname in blog comments. The issue affects the blog comment component… - CVE-2020-15276 2024-11-21 14:05 2020-10-31 Show GitHub Exploit DB Packet Storm
212052 7.2 HIGH
Network
basercms basercms baserCMS before version 4.4.1 is affected by Remote Code Execution (RCE). Code may be executed by logging in as a system administrator and uploading an executable script file such as a PHP file. The … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-15277 2024-11-21 14:05 2020-10-31 Show GitHub Exploit DB Packet Storm
212053 8.1 HIGH
Network
basercms basercms baserCMS before version 4.4.1 is vulnerable to Cross-Site Scripting. The issue affects the following components: Edit feed settings, Edit widget area, Sub site new registration, New category registra… - CVE-2020-15273 2024-11-21 14:05 2020-10-31 Show GitHub Exploit DB Packet Storm
212054 7.5 HIGH
Network
cogboard red_discord_bot Red Discord Bot before version 3.4.1 has an unauthorized privilege escalation exploit in the Mod module. This exploit allows Discord users with a high privilege level within the guild to bypass hiera… - CVE-2020-15278 2024-11-21 14:05 2020-10-29 Show GitHub Exploit DB Packet Storm
212055 7.0 HIGH
Local
blueman_project
debian
fedoraproject
blueman
debian_linux
fedora
Blueman is a GTK+ Bluetooth Manager. In Blueman before 2.1.4, the DhcpClient method of the D-Bus interface to blueman-mechanism is prone to an argument injection vulnerability. The impact highly depe… CWE-88
Argument Injection
CVE-2020-15238 2024-11-21 14:05 2020-10-28 Show GitHub Exploit DB Packet Storm
212056 7.2 HIGH
Network
pulsesecure
ivanti
pulse_connect_secure
connect_secure
pulse_policy_secure
policy_secure
An XML external entity (XXE) vulnerability in Pulse Connect Secure (PCS) before 9.1R9 and Pulse Policy Secure (PPS) before 9.1R9 allows remote authenticated admins to conduct server-side request forg… CWE-611
XXE
CVE-2020-15352 2024-11-21 14:05 2020-10-27 Show GitHub Exploit DB Packet Storm
212057 5.4 MEDIUM
Network
requarks wiki.js In Wiki.js before version 2.5.162, an XSS payload can be injected in a page title and executed via the search results. While the title is properly escaped in both the navigation links and the actual … - CVE-2020-15274 2024-11-21 14:05 2020-10-27 Show GitHub Exploit DB Packet Storm
212058 9.6 CRITICAL
Network
git-tag-annotation-action_project git-tag-annotation-action In the git-tag-annotation-action (open source GitHub Action) before version 1.0.1, an attacker can execute arbitrary (*) shell commands if they can control the value of [the `tag` input] or manage to… - CVE-2020-15272 2024-11-21 14:05 2020-10-27 Show GitHub Exploit DB Packet Storm
212059 8.8 HIGH
Network
lookatme_project lookatme In lookatme (python/pypi package) versions prior to 2.3.0, the package automatically loaded the built-in "terminal" and "file_loader" extensions. Users that use lookatme to render untrusted markdown … CWE-78
OS Command 
CVE-2020-15271 2024-11-21 14:05 2020-10-27 Show GitHub Exploit DB Packet Storm
212060 4.3 MEDIUM
Network
parseplatform parse-server Parse Server (npm package parse-server) broadcasts events to all clients without checking if the session token is valid. This allows clients with expired sessions to still receive subscription object… CWE-672
 Operation on a Resource after Expiration or Release
CVE-2020-15270 2024-11-21 14:05 2020-10-23 Show GitHub Exploit DB Packet Storm