Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225341 3.5 注意 The phpMyAdmin Project - phpMyAdmin の view_create.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3742 2013-07-8 14:29 2013-05-29 Show GitHub Exploit DB Packet Storm
225342 7.5 危険 Lianja - Lianja SQL Server の db_netserver におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3563 2013-07-8 14:27 2013-07-4 Show GitHub Exploit DB Packet Storm
225343 4.3 警告 シスコシステムズ - Cisco Identity Services Engine 上で稼働する administration/monitoring パネルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3413 2013-07-8 14:25 2013-07-3 Show GitHub Exploit DB Packet Storm
225344 7.5 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の PreserveWrapper の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1694 2013-07-8 11:06 2013-06-25 Show GitHub Exploit DB Packet Storm
225345 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3343 2013-07-8 10:42 2013-06-11 Show GitHub Exploit DB Packet Storm
225346 7.2 危険 Linux - Linux Kernel の kernel/events/core.c における権限を取得される脆弱性 CWE-189
数値処理の問題
CVE-2013-2094 2013-07-5 11:44 2013-04-25 Show GitHub Exploit DB Packet Storm
225347 5 警告 Mozilla Foundation - Mozilla Firefox の国際化ドメイン名表示アルゴリズムにおけるアドレスバーを偽装される脆弱性 CWE-310
暗号の問題
CVE-2013-1699 2013-07-5 11:05 2013-06-25 Show GitHub Exploit DB Packet Storm
225348 5 警告 レッドハット - Red Hat Enterprise Virtualization Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2144 2013-07-5 11:05 2013-06-10 Show GitHub Exploit DB Packet Storm
225349 4.3 警告 Mozilla Foundation - Mozilla Firefox の getUserMedia 許可の実装におけるカメラやマイクへのアクセスを許可させる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1698 2013-07-5 11:04 2013-06-25 Show GitHub Exploit DB Packet Storm
225350 5 警告 Mozilla Foundation - Mozilla Firefox におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1695 2013-07-5 11:03 2013-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200621 9.8 CRITICAL
Network
whmcssmarters web_tv_player IPTV Smarters WEB TV PLAYER through 2020-02-22 allows attackers to execute OS commands by uploading a script. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-9380 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200622 9.1 CRITICAL
Network
humaxdigital hga12r-02_firmware HUMAX HGA12R-02 BRGCAA 1.1.53 devices allow Session Hijacking. CWE-384
 Session Fixation
CVE-2020-9370 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200623 9.8 CRITICAL
Network
rubetek smarthome_firmware Rubetek SmartHome 2020 devices use unencrypted 433 MHz communication between controllers and beacons, allowing an attacker to sniff and spoof beacon requests remotely. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-9550 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200624 9.8 CRITICAL
Network
humaxdigital hga12r-02_firmware An issue was discovered on HUMAX HGA12R-02 BRGCAA 1.1.53 devices. A vulnerability in the authentication functionality in the web-based interface could allow an unauthenticated remote attacker to capt… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-9477 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200625 7.5 HIGH
Network
commscope arris_tg1692a_firmware ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 decoding. CWE-326
Inadequate Encryption Strength
CVE-2020-9476 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200626 7.8 HIGH
Local
codepeople appointment_booking_calendar The Appointment Booking Calendar plugin before 1.3.35 for WordPress allows user input (in fields such as Description or Name) in any booking form to be any formula, which then could be exported via t… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-9372 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200627 4.8 MEDIUM
Network
codepeople appointment_booking_calendar Stored XSS exists in the Appointment Booking Calendar plugin before 1.3.35 for WordPress. In the cpabc_appointments.php file, the Calendar Name input could allow attackers to inject arbitrary JavaScr… CWE-79
Cross-site Scripting
CVE-2020-9371 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200628 5.3 MEDIUM
Network
creative-solutions creative_contact_form An issue was discovered in helpers/mailer.php in the Creative Contact Form extension 4.6.2 before 2019-12-03 for Joomla!. A directory traversal vulnerability resides in the filename field for uploade… CWE-22
Path Traversal
CVE-2020-9364 2024-11-21 14:40 2020-03-5 Show GitHub Exploit DB Packet Storm
200629 7.8 HIGH
Local
pdfresurrect_project
debian
pdfresurrect
debian_linux
In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document. CWE-787
 Out-of-bounds Write
CVE-2020-9549 2024-11-21 14:40 2020-03-2 Show GitHub Exploit DB Packet Storm
200630 7.5 HIGH
Network
palemoon pale_moon Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site. CWE-476
 NULL Pointer Dereference
CVE-2020-9545 2024-11-21 14:40 2020-03-2 Show GitHub Exploit DB Packet Storm