Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225431 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1674 2013-06-28 14:54 2013-05-14 Show GitHub Exploit DB Packet Storm
225432 4.3 警告 Mozilla Foundation - Mozilla Firefox におけるフルパス名を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1671 2013-06-28 14:51 2013-05-14 Show GitHub Exploit DB Packet Storm
225433 4.3 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird における特定の読み取り専用の制限を回避される脆弱性 CWE-264
CWE-79
CVE-2013-1670 2013-06-28 14:49 2013-05-14 Show GitHub Exploit DB Packet Storm
225434 10 危険 Mozilla Foundation - Mozilla Firefox のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-1669 2013-06-28 14:46 2013-05-14 Show GitHub Exploit DB Packet Storm
225435 6.2 警告 Linux - Linux Kernel の mm/shmem.c における権限を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1767 2013-06-28 14:01 2013-02-27 Show GitHub Exploit DB Packet Storm
225436 6.9 警告 Linux - Linux Kernel の ptrace 機能における権限を取得される脆弱性 CWE-362
競合状態
CVE-2013-0871 2013-06-28 12:08 2013-01-27 Show GitHub Exploit DB Packet Storm
225437 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0801 2013-06-28 12:06 2013-05-14 Show GitHub Exploit DB Packet Storm
225438 5 警告 シスコシステムズ - Cisco Prime for HCS Assurance の Web フレームワークにおけるデイレクトリおよびファイルを列挙される脆弱性 CWE-200
情報漏えい
CVE-2013-3398 2013-06-28 11:56 2013-06-26 Show GitHub Exploit DB Packet Storm
225439 4.3 警告 シスコシステムズ - Cisco コンテンツ セキュリティ管理アプライアンスデバイス上で稼働する Cisco Content Security Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3396 2013-06-28 11:54 2013-06-26 Show GitHub Exploit DB Packet Storm
225440 5 警告 シスコシステムズ - Cisco Jabber for Windows および Cisco Virtualization Experience Media Engine におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3393 2013-06-28 11:53 2013-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210801 8.1 HIGH
Network
otrs otrs An attacker with the ability to generate session IDs or password reset tokens, either by being able to authenticate or by exploiting OSA-2020-09, may be able to predict other users session IDs, passw… CWE-331
 Insufficient Entropy
CVE-2020-1773 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210802 7.5 HIGH
Network
otrs
opensuse
debian
otrs
leap
backports_sle
debian_linux
It's possible to craft Lost Password requests with wildcards in the Token value, which allows attacker to retrieve valid Token(s), generated by users which already requested new passwords. This issue… NVD-CWE-noinfo
CVE-2020-1772 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210803 5.4 MEDIUM
Network
otrs otrs Attacker is able craft an article with a link to the customer address book with malicious content (JavaScript). When agent opens the link, JavaScript code is executed due to the missing parameter enc… CWE-79
Cross-site Scripting
CVE-2020-1771 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210804 4.3 MEDIUM
Network
otrs
opensuse
debian
otrs
leap
backports_sle
debian_linux
Support bundle generated files could contain sensitive information that might be unwanted to be disclosed. This issue affects: ((OTRS)) Community Edition: 5.0.41 and prior versions, 6.0.26 and prior … CWE-200
Information Exposure
CVE-2020-1770 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210805 4.3 MEDIUM
Network
otrs
opensuse
otrs
leap
backports_sle
In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue. This issue affects: ((OTRS)) Community Edition: 5.0… NVD-CWE-noinfo
CVE-2020-1769 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210806 7.8 HIGH
Local
huawei p30_firmware HUAWEI smartphones P30 with versions earlier than 10.0.0.185(C00E85R1P11) have an improper access control vulnerability. The software incorrectly restricts access to a function interface from an unau… NVD-CWE-noinfo
CVE-2020-1800 2024-11-21 14:11 2020-03-27 Show GitHub Exploit DB Packet Storm
210807 8.6 HIGH
Network
kiali
redhat
kiali
openshift_service_mesh
A hard-coded cryptographic key vulnerability in the default configuration file was found in Kiali, all versions prior to 1.15.1. A remote attacker could abuse this flaw by creating their own JWT sign… CWE-798
 Use of Hard-coded Credentials
CVE-2020-1764 2024-11-21 14:11 2020-03-26 Show GitHub Exploit DB Packet Storm
210808 9.8 CRITICAL
Network
apache
debian
shiro
debian_linux
Apache Shiro before 1.5.2, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass. NVD-CWE-noinfo
CVE-2020-1957 2024-11-21 14:11 2020-03-26 Show GitHub Exploit DB Packet Storm
210809 9.8 CRITICAL
Network
pyyaml
fedoraproject
opensuse
oracle
pyyaml
fedora
leap
communications_cloud_native_core_network_function_cloud_native_environment
A vulnerability was discovered in the PyYAML library in versions before 5.3.1, where it is susceptible to arbitrary code execution when it processes untrusted YAML files through the full_load method … - CVE-2020-1747 2024-11-21 14:11 2020-03-25 Show GitHub Exploit DB Packet Storm
210810 5.6 MEDIUM
Network
redhat keycloak A flaw was found in keycloak before version 9.0.1. When configuring an Conditional OTP Authentication Flow as a post login flow of an IDP, the failure login events for OTP are not being sent to the b… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-1744 2024-11-21 14:11 2020-03-24 Show GitHub Exploit DB Packet Storm