Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225251 10 危険 Mozilla Foundation - 複数の Mozilla 製品の COW および SOW の実装における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0773 2013-06-19 11:05 2013-02-19 Show GitHub Exploit DB Packet Storm
225252 3.3 注意 (複数のベンダ) - Wi-Fiスポット設定用ソフトウェアにおける接続処理に関する脆弱性 CWE-287
不適切な認証
CVE-2013-2310 2013-06-19 09:57 2013-05-15 Show GitHub Exploit DB Packet Storm
225253 2.6 注意 OpenPNEプロジェクト - OpenPNE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2309 2013-06-19 09:54 2013-05-13 Show GitHub Exploit DB Packet Storm
225254 7.1 危険 FairCom - c-treeACE の難読化アルゴリズムに脆弱性 CWE-310
暗号の問題
CVE-2013-0148 2013-06-19 09:47 2013-06-10 Show GitHub Exploit DB Packet Storm
225255 2.6 注意 Jun.I - Galapagos Browser における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2013-3643 2013-06-18 17:54 2013-06-11 Show GitHub Exploit DB Packet Storm
225256 2.6 注意 Jun.I - Angel Browser における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2013-3642 2013-06-18 17:51 2013-06-11 Show GitHub Exploit DB Packet Storm
225257 4.3 警告 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4612 2013-06-18 17:26 2013-01-18 Show GitHub Exploit DB Packet Storm
225258 10 危険 Project Redcap - REDCap における脆弱性 CWE-noinfo
情報不足
CVE-2013-4611 2013-06-18 17:25 2013-01-25 Show GitHub Exploit DB Packet Storm
225259 10 危険 Project Redcap - REDCap のデータエントリフォームにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-4610 2013-06-18 17:24 2013-02-1 Show GitHub Exploit DB Packet Storm
225260 6.5 警告 Project Redcap - REDCap におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4609 2013-06-18 17:23 2013-02-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212091 3.5 LOW
Network
xmpp-http-upload_project xmpp-http-upload In xmpp-http-upload before version 0.4.0, when the GET method is attacked, attackers can read files which have a `.data` suffix and which are accompanied by a JSON file with the `.meta` suffix. This … - CVE-2020-15239 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
212092 5.6 MEDIUM
Network
electronjs electron Electron before versions 11.0.0-beta.6, 10.1.2, 9.3.1 or 8.5.2 is vulnerable to a context isolation bypass. Apps using both `contextIsolation` and `sandbox: true` are affected. Apps using both `conte… - CVE-2020-15215 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
212093 7.5 HIGH
Network
electronjs electron In Electron before versions 11.0.0-beta.1, 10.0.1, 9.3.0 or 8.5.1 the `will-navigate` event that apps use to prevent navigations to unexpected destinations as per our security recommendations can be … NVD-CWE-Other
CVE-2020-15174 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
212094 7.5 HIGH
Network
trustwave
debian
modsecurity
debian_linux
Trustwave ModSecurity 3.x through 3.0.4 allows denial of service via a special request. NOTE: The discoverer reports "Trustwave has signaled they are disputing our claims." The CVE suggests that ther… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-15598 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
212095 5.9 MEDIUM
Network
shrinerb shrine In Shrine before version 3.3.0, when using the `derivation_endpoint` plugin, it's possible for the attacker to use a timing attack to guess the signature of the derivation URL. The problem has been f… - CVE-2020-15237 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
212096 7.5 HIGH
Network
ractf core In RACTF before commit f3dc89b, unauthenticated users are able to get the value of sensitive config keys that would normally be hidden to everyone except admins. All versions after commit f3dc89b9f6a… - CVE-2020-15235 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
212097 7.5 HIGH
Network
requarks wiki.js In Wiki.js before version 2.5.151, directory traversal outside of Wiki.js context is possible when a storage module with local asset cache fetching is enabled. A malicious user can potentially read a… - CVE-2020-15236 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
212098 4.8 MEDIUM
Network
ory fosite ORY Fosite is a security first OAuth2 & OpenID Connect framework for Go. In Fosite before version 0.34.1, the OAuth 2.0 Client's registered redirect URLs and the redirect URL provided at the OAuth2 A… CWE-178
 Improper Handling of Case Sensitivity
CVE-2020-15234 2024-11-21 14:05 2020-10-3 Show GitHub Exploit DB Packet Storm
212099 4.8 MEDIUM
Network
ory fosite ORY Fosite is a security first OAuth2 & OpenID Connect framework for Go. In Fosite from version 0.30.2 and before version 0.34.1, there is an issue in which an an attacker can override the registered… CWE-601
Open Redirect
CVE-2020-15233 2024-11-21 14:05 2020-10-3 Show GitHub Exploit DB Packet Storm
212100 8.1 HIGH
Network
zohocorp manageengine_desktop_central
manageengine_remote_access_plus
A design issue was discovered in GetInternetRequestHandle, InternetSendRequestEx and InternetSendRequestByBitrate in the client side of Zoho ManageEngine Desktop Central 10.0.552.W and Remote Access … NVD-CWE-Other
CVE-2020-15589 2024-11-21 14:05 2020-10-3 Show GitHub Exploit DB Packet Storm