Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225401 7.5 危険 John Nunemaker - Ruby 用 httparty gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1801 2013-04-11 19:41 2013-01-14 Show GitHub Exploit DB Packet Storm
225402 7.5 危険 John Nunemaker - Ruby 用 crack gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1800 2013-04-11 19:40 2013-01-14 Show GitHub Exploit DB Packet Storm
225403 7.5 危険 Daniel Harrington - Ruby 用 nori gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0285 2013-04-11 19:39 2013-01-14 Show GitHub Exploit DB Packet Storm
225404 5 警告 New Relic - Ruby Agent における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0284 2013-04-11 19:38 2013-02-13 Show GitHub Exploit DB Packet Storm
225405 6.8 警告 Michael Bleigh and Intridea, Inc. - Ruby 用 omniauth-oauth2 gem におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6134 2013-04-11 19:37 2013-02-25 Show GitHub Exploit DB Packet Storm
225406 5.8 警告 Apache Software Foundation - Apache Maven のデフォルト設定におけるサーバになりすまされる脆弱性 CWE-16
環境設定
CVE-2013-0253 2013-04-11 17:36 2013-04-2 Show GitHub Exploit DB Packet Storm
225407 4.3 警告 fedorahosted.org - cronie におけるファイル記述子が漏えいする脆弱性 CWE-200
情報漏えい
CVE-2012-6097 2013-04-11 17:35 2013-01-9 Show GitHub Exploit DB Packet Storm
225408 2.1 注意 Gluster, Inc.
レッドハット
- Red Hat Storage の GlusterFS 機能における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5635 2013-04-11 17:35 2013-03-28 Show GitHub Exploit DB Packet Storm
225409 4 警告 OpenStack
Canonical
- 複数の OpenStack 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1838 2013-04-11 14:57 2013-03-15 Show GitHub Exploit DB Packet Storm
225410 4.3 警告 フェンリル株式会社 - Sleipnir for Windows におけるアドレスバー偽装の脆弱性 CWE-noinfo
情報不足
CVE-2013-2303 2013-04-11 12:01 2013-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199791 7.5 HIGH
Network
tenable tenable.sc In certain scenarios in Tenable.sc prior to 5.17.0, a scanner could potentially be used outside the user's defined scan zone without a particular zone being specified within the Automatic Distributio… NVD-CWE-noinfo
CVE-2020-5808 2024-11-21 14:34 2020-12-22 Show GitHub Exploit DB Packet Storm
199792 8.1 HIGH
Network
marvell qconvergeconsole Relative Path Traversal in Marvell QConvergeConsole GUI 5.5.0.74 allows a remote, authenticated attacker to delete arbitrary files on disk as SYSTEM or root. CWE-22
Path Traversal
CVE-2020-5803 2024-11-21 14:34 2020-12-19 Show GitHub Exploit DB Packet Storm
199793 7.5 HIGH
Network
weseek growi Directory traversal vulnerability in GROWI versions prior to v4.2.3 (v4.2 Series), GROWI versions prior to v4.1.12 (v4.1 Series), and GROWI v3 series and earlier GROWI versions prior to v4.2.3 (v4.2 … CWE-22
Path Traversal
CVE-2020-5683 2024-11-21 14:34 2020-12-16 Show GitHub Exploit DB Packet Storm
199794 7.5 HIGH
Network
weseek growi Improper input validation in GROWI versions prior to v4.2.3 (v4.2 Series), GROWI versions prior to v4.1.12 (v4.1 Series), and GROWI v3 series and earlier GROWI versions prior to v4.2.3 (v4.2 Series),… CWE-20
CWE-400
 Improper Input Validation 
 Uncontrolled Resource Consumption
CVE-2020-5682 2024-11-21 14:34 2020-12-16 Show GitHub Exploit DB Packet Storm
199795 7.4 HIGH
Adjacent
mitsubishielectric melsec_iq-f_fx5u_cpu_firmware Improper check or handling of exceptional conditions in MELSEC iQ-F series FX5U(C) CPU unit firmware version 1.060 and earlier allows an attacker to cause a denial-of-service (DoS) condition on progr… NVD-CWE-noinfo
CVE-2020-5665 2024-11-21 14:34 2020-12-14 Show GitHub Exploit DB Packet Storm
199796 9.8 CRITICAL
Network
soliton filezen Directory traversal vulnerability in FileZen versions from V3.0.0 to V4.2.2 allows remote attackers to upload an arbitrary file in a specific directory via unspecified vectors. As a result, an arbitr… CWE-22
Path Traversal
CVE-2020-5639 2024-11-21 14:34 2020-12-14 Show GitHub Exploit DB Packet Storm
199797 6.8 MEDIUM
Adjacent
necplatforms aterm_sa3500g_firmware Improper validation of integrity check value vulnerability in Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to execute a malicious program. CWE-354
 Improper Validation of Integrity Check Value
CVE-2020-5637 2024-11-21 14:34 2020-12-14 Show GitHub Exploit DB Packet Storm
199798 6.8 MEDIUM
Adjacent
necplatforms aterm_sa3500g_firmware Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to send a specially crafted request to a specific URL, which may result in an arbitrary command… CWE-78
OS Command 
CVE-2020-5636 2024-11-21 14:34 2020-12-14 Show GitHub Exploit DB Packet Storm
199799 8.8 HIGH
Adjacent
necplatforms aterm_sa3500g_firmware Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker on the adjacent network to send a specially crafted request to a specific URL, which may result in an arbitrary command executio… CWE-78
OS Command 
CVE-2020-5635 2024-11-21 14:34 2020-12-14 Show GitHub Exploit DB Packet Storm
199800 5.3 MEDIUM
Network
f5 big-ip_advanced_firewall_manager On BIG-IP 14.1.0-14.1.2.6, undisclosed endpoints in iControl REST allow for a reflected XSS attack, which could lead to a complete compromise of the BIG-IP system if the victim user is granted the ad… CWE-79
Cross-site Scripting
CVE-2020-5950 2024-11-21 14:34 2020-12-12 Show GitHub Exploit DB Packet Storm