Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225401 9.3 危険 Kelly D. Redding - Ruby 用 kelredd-pruview gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1947 2013-04-30 17:50 2013-04-4 Show GitHub Exploit DB Packet Storm
225402 9.3 危険 karteek-docsplit - Ruby 用 Karteek Docsplit gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1933 2013-04-30 17:49 2013-04-1 Show GitHub Exploit DB Packet Storm
225403 6.8 警告 Novell
plataformatec
- Ruby 用 Devise gem における不正な結果が返される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0233 2013-04-30 17:48 2013-01-28 Show GitHub Exploit DB Packet Storm
225404 7.5 危険 Grape
Erik Michaels-Ober
- Grape などの製品で使用される Ruby 用 multi_xml gem におけるオブジェクトインジェクション攻撃を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0175 2013-04-30 17:43 2013-01-10 Show GitHub Exploit DB Packet Storm
225405 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4466 2013-04-30 17:29 2012-10-3 Show GitHub Exploit DB Packet Storm
225406 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4464 2013-04-30 17:25 2012-10-3 Show GitHub Exploit DB Packet Storm
225407 5.4 警告 シトリックス・システムズ - NetScaler Access Gateway Enterprise Edition に脆弱性 CWE-noinfo
情報不足
CVE-2013-2767 2013-04-30 12:45 2013-04-26 Show GitHub Exploit DB Packet Storm
225408 9.3 危険 シスコシステムズ - Cisco MDS 9000 および Nexus 5000 デバイス用 Cisco Device Manager における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1192 2013-04-26 16:56 2013-04-24 Show GitHub Exploit DB Packet Storm
225409 7.5 危険 シスコシステムズ - Cisco UCS における KVM 認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-1186 2013-04-26 16:54 2013-04-24 Show GitHub Exploit DB Packet Storm
225410 9.3 危険 シスコシステムズ - Cisco UCS の Manager コンポーネントの Web インタフェースにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1185 2013-04-26 16:53 2013-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200061 7.8 HIGH
Local
nvidia geforce_experience NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in its services in which a folder is created by nvcontainer.exe under normal user login with LOCAL_SYSTEM privileg… NVD-CWE-noinfo
CVE-2020-5978 2024-11-21 14:34 2020-10-24 Show GitHub Exploit DB Packet Storm
200062 7.8 HIGH
Local
nvidia geforce_experience NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in NVIDIA Web Helper NodeJS Web Server in which an uncontrolled search path is used to load a node module, which m… CWE-426
 Untrusted Search Path
CVE-2020-5977 2024-11-21 14:34 2020-10-24 Show GitHub Exploit DB Packet Storm
200063 8.8 HIGH
Network
tipsandtricks-hq simple_download_monitor SQL injection vulnerability in Simple Download Monitor 3.8.8 and earlier allows remote attackers to execute arbitrary SQL commands via a specially crafted URL. CWE-89
SQL Injection
CVE-2020-5651 2024-11-21 14:34 2020-10-22 Show GitHub Exploit DB Packet Storm
200064 6.1 MEDIUM
Network
tipsandtricks-hq simple_download_monitor Cross-site scripting vulnerability in Simple Download Monitor 3.8.8 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2020-5650 2024-11-21 14:34 2020-10-22 Show GitHub Exploit DB Packet Storm
200065 7.2 HIGH
Network
nagios nagios_xi Improper neutralization of argument delimiters in a command in Nagios XI 5.7.3 allows a remote, authenticated admin user to write to arbitrary files and ultimately execute code with the privileges of… CWE-88
Argument Injection
CVE-2020-5792 2024-11-21 14:34 2020-10-21 Show GitHub Exploit DB Packet Storm
200066 7.2 HIGH
Network
nagios nagios_xi Improper neutralization of special elements used in an OS command in Nagios XI 5.7.3 allows a remote, authenticated admin user to execute operating system commands with the privileges of the apache u… CWE-78
OS Command 
CVE-2020-5791 2024-11-21 14:34 2020-10-21 Show GitHub Exploit DB Packet Storm
200067 6.5 MEDIUM
Network
nagios nagios_xi Cross-site request forgery in Nagios XI 5.7.3 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link. CWE-352
 Origin Validation Error
CVE-2020-5790 2024-11-21 14:34 2020-10-21 Show GitHub Exploit DB Packet Storm
200068 9.8 CRITICAL
Network
onethird onethird Local file inclusion vulnerability in OneThird CMS v1.96c and earlier allows a remote unauthenticated attacker to execute arbitrary code or obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2020-5640 2024-11-21 14:34 2020-10-20 Show GitHub Exploit DB Packet Storm
200069 8.8 HIGH
Network
onwebchat live_chat_-_live_support Cross-site request forgery (CSRF) vulnerability in Live Chat - Live support version 3.1.0 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. CWE-352
 Origin Validation Error
CVE-2020-5642 2024-11-21 14:34 2020-10-15 Show GitHub Exploit DB Packet Storm
200070 6.5 MEDIUM
Network
dell emc_openmanage_integration_for_microsoft_system_center Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain an information disclosure vulnerability. Authenticated low privileged OMIMSCC … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-5389 2024-11-21 14:34 2020-10-9 Show GitHub Exploit DB Packet Storm