Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225541 4.3 警告 アップル - Apple Mac OS X の IPSec の実装におけるセキュリティゲートウェイになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-1028 2013-10-9 17:54 2013-09-12 Show GitHub Exploit DB Packet Storm
225542 4.3 警告 アップル - Apple Safari などの製品で使用される WebKit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1012 2013-10-9 17:44 2013-06-4 Show GitHub Exploit DB Packet Storm
225543 6.8 警告 アップル
Google
- Google Chrome における脆弱性 CWE-20
不適切な入力確認
CVE-2013-0926 2013-10-9 17:38 2013-03-26 Show GitHub Exploit DB Packet Storm
225544 7.1 危険 TP-LINK Technologies - 複数の TP-Link IP Cameras 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3688 2013-10-9 17:18 2013-06-12 Show GitHub Exploit DB Packet Storm
225545 6.8 警告 アップル - Apple iTunes などの製品で使用される WebKit における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0997 2013-10-9 16:51 2013-05-16 Show GitHub Exploit DB Packet Storm
225546 6.8 警告 Adiscon - rsyslog の ElasticSearch プラグインの writeDataError 関数におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4758 2013-10-9 15:12 2013-07-5 Show GitHub Exploit DB Packet Storm
225547 6.8 警告 アップル - Apple iOS などの製品で使用される WebKit における任意のコードを実行される脆弱性 CWE-362
競合状態
CVE-2012-3748 2013-10-9 14:33 2012-11-3 Show GitHub Exploit DB Packet Storm
225548 4.3 警告 アップル
ClamAV
Canonical
- ClamAV の pdf.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2021 2013-10-9 14:19 2013-04-24 Show GitHub Exploit DB Packet Storm
225549 5 警告 アップル
ClamAV
Canonical
- ClamAV の pe.c における整数アンダーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-2020 2013-10-9 14:16 2013-04-23 Show GitHub Exploit DB Packet Storm
225550 - - Optimal Payments - ** 削除 ** NETELLER Direct に HTTP リクエストの検証不備の脆弱性 - CVE-2013-3611 2013-10-9 12:06 2013-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209741 6.1 MEDIUM
Network
directoriespro directories_pro A cross-site scripting (XSS) vulnerability in the SabaiApp Directories Pro plugin 1.3.45 for WordPress allows remote attackers to inject arbitrary web script or HTML via a POST to /wp-admin/admin.php… CWE-79
Cross-site Scripting
CVE-2020-29303 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209742 5.3 MEDIUM
Network
openasset digital_asset_management OpenAsset Digital Asset Management (DAM) 12.0.19 and earlier failed to implement access controls on /Stream/ProjectsCSV endpoint, allowing unauthenticated attackers to gain access to potentially sens… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-28861 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209743 8.8 HIGH
Network
openasset digital_asset_management OpenAssetDigital Asset Management (DAM) through 12.0.19 does not correctly sanitize user supplied input, incorporating it into its SQL queries, allowing for authenticated blind SQL injection. CWE-89
SQL Injection
CVE-2020-28860 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209744 6.1 MEDIUM
Network
openasset digital_asset_management OpenAsset Digital Asset Management (DAM) through 12.0.19 does not correctly sanitize user supplied input in multiple parameters and endpoints, allowing for reflected cross-site scripting attacks. CWE-79
Cross-site Scripting
CVE-2020-28859 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209745 8.8 HIGH
Network
openasset digital_asset_management OpenAsset Digital Asset Management (DAM) through 12.0.19 does not correctly verify whether a request made to the application was intentionally made by the user, allowing for cross-site request forger… CWE-352
 Origin Validation Error
CVE-2020-28858 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209746 6.1 MEDIUM
Network
openasset digital_asset_management OpenAsset Digital Asset Management (DAM) through 12.0.19, does not correctly sanitize user supplied input in multiple parameters and endpoints, allowing for stored cross-site scripting attacks. CWE-79
Cross-site Scripting
CVE-2020-28857 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209747 7.5 HIGH
Network
openasset digital_asset_management OpenAsset Digital Asset Management (DAM) through 12.0.19 does not correctly determine the HTTP request's originating IP address, allowing attackers to spoof it using X-Forwarded-For in the header, by… CWE-290
 Authentication Bypass by Spoofing
CVE-2020-28856 2024-11-21 14:23 2020-12-15 Show GitHub Exploit DB Packet Storm
209748 9.8 CRITICAL
Network
car_rental_management_system_project car_rental_management_system An issue was discovered in Car Rental Management System 1.0. An unauthenticated user can perform a file inclusion attack against the /index.php file with a partial filename in the "page" parameter, t… NVD-CWE-noinfo
CVE-2020-29227 2024-11-21 14:23 2020-12-14 Show GitHub Exploit DB Packet Storm
209749 8.8 HIGH
Network
tiki tikiwiki_cms\/groupware TikiWiki 21.2 allows templates to be edited without CSRF protection. This could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary a… CWE-352
 Origin Validation Error
CVE-2020-29254 2024-11-21 14:23 2020-12-12 Show GitHub Exploit DB Packet Storm
209750 3.5 LOW
Network
opencart opencart Cross Site Request Forgery (CSRF) in CART option in OpenCart Ltd. Opencart CMS 3.0.3.6 allows attacker to add cart items via Add to cart. CWE-352
 Origin Validation Error
CVE-2020-28838 2024-11-21 14:23 2020-12-12 Show GitHub Exploit DB Packet Storm