Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225291 5.8 警告 PostgreSQL.org
アップル
- PostgreSQL の contrib/xml2 におけるデータを改ざんされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3488 2013-04-2 16:34 2012-08-17 Show GitHub Exploit DB Packet Storm
225292 3.5 注意 Novell - Novell Sentinel Log Manager におけるデータ保持ポリシーを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6534 2013-04-2 16:34 2012-09-21 Show GitHub Exploit DB Packet Storm
225293 6.8 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0532 2013-04-2 16:32 2013-03-25 Show GitHub Exploit DB Packet Storm
225294 7.2 危険 IBM - IBM Security AppScan Enterprise および Rational Policy Tester における権限を取得される脆弱性 CWE-DesignError
CVE-2013-0513 2013-04-2 15:58 2013-03-25 Show GitHub Exploit DB Packet Storm
225295 4.3 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0512 2013-04-2 15:16 2013-03-25 Show GitHub Exploit DB Packet Storm
225296 6.5 警告 IBM - IBM Security AppScan Enterprise における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-0511 2013-04-2 15:12 2013-03-25 Show GitHub Exploit DB Packet Storm
225297 4.3 警告 IBM - IBM Security AppScan Enterprise におけるテストアカウントをハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0510 2013-04-2 15:11 2013-03-25 Show GitHub Exploit DB Packet Storm
225298 4.3 警告 IBM - IBM Security AppScan Enterprise および Rational Policy Tester における認証資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0474 2013-04-2 15:09 2013-03-25 Show GitHub Exploit DB Packet Storm
225299 4.3 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0473 2013-04-2 15:03 2013-03-25 Show GitHub Exploit DB Packet Storm
225300 6.8 警告 IBM - IBM Tivoli Endpoint Manager の SUA アプリケーションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0452 2013-04-2 14:59 2013-03-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198401 6.8 MEDIUM
Physics
freebsd
netapp
freebsd
clustered_data_ontap
In FreeBSD 12.1-STABLE before r361918, 12.1-RELEASE before p6, 11.4-STABLE before r361919, 11.3-RELEASE before p10, and 11.4-RC2 before p1, an invalid memory location may be used for HID items if the… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-7456 2024-11-21 14:37 2020-06-10 Show GitHub Exploit DB Packet Storm
198402 5.4 MEDIUM
Network
angularjs angular.js angular.js prior to 1.8.0 allows cross site scripting. The regex-based input HTML replacement may turn sanitized code into unsanitized one. Wrapping "<option>" elements in "<select>" ones changes par… CWE-79
Cross-site Scripting
CVE-2020-7676 2024-11-21 14:37 2020-06-8 Show GitHub Exploit DB Packet Storm
198403 7.5 HIGH
Network
url-regex_project url-regex all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-7661 2024-11-21 14:37 2020-06-5 Show GitHub Exploit DB Packet Storm
198404 7.5 HIGH
Network
websocket-extensions_project
debian
canonical
websocket-extensions
debian_linux
ubuntu_linux
websocket-extensions ruby module prior to 0.1.5 allows Denial of Service (DoS) via Regex Backtracking. The extension parser may take quadratic time when parsing a header containing an unclosed string… NVD-CWE-Other
CVE-2020-7663 2024-11-21 14:37 2020-06-3 Show GitHub Exploit DB Packet Storm
198405 7.5 HIGH
Network
websocket-extensions_project websocket-extensions websocket-extensions npm module prior to 0.1.4 allows Denial of Service (DoS) via Regex Backtracking. The extension parser may take quadratic time when parsing a header containing an unclosed string … NVD-CWE-Other
CVE-2020-7662 2024-11-21 14:37 2020-06-3 Show GitHub Exploit DB Packet Storm
198406 8.1 HIGH
Network
verizon serialize-javascript serialize-javascript prior to 3.1.0 allows remote attackers to inject arbitrary code via the function "deleteFunctions" within "index.js". CWE-502
 Deserialization of Untrusted Data
CVE-2020-7660 2024-11-21 14:37 2020-06-2 Show GitHub Exploit DB Packet Storm
198407 7.5 HIGH
Network
celluloid reel reel through 0.6.1 allows Request Smuggling attacks due to incorrect Content-Length and Transfer encoding header parsing. It is possible to conduct HTTP request smuggling attacks by sending the Conte… CWE-444
HTTP Request Smuggling
CVE-2020-7659 2024-11-21 14:37 2020-06-1 Show GitHub Exploit DB Packet Storm
198408 7.5 HIGH
Network
synk broker All versions of snyk-broker before 4.73.1 are vulnerable to Information Exposure. It logs private keys if logging level is set to DEBUG. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-7654 2024-11-21 14:37 2020-05-30 Show GitHub Exploit DB Packet Storm
198409 6.5 MEDIUM
Network
synk broker All versions of snyk-broker after 4.72.0 including and before 4.73.1 are vulnerable to Arbitrary File Read. It allows arbitrary file reads to users with access to Snyk's internal network of any files… CWE-22
Path Traversal
CVE-2020-7650 2024-11-21 14:37 2020-05-30 Show GitHub Exploit DB Packet Storm
198410 6.5 MEDIUM
Network
synk broker All versions of snyk-broker before 4.72.2 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for users who have access to Snyk's internal network by appending the URL with a fragme… CWE-22
Path Traversal
CVE-2020-7648 2024-11-21 14:37 2020-05-30 Show GitHub Exploit DB Packet Storm