Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225611 5 警告 サン・マイクロシステムズ - Oracle Java SE の Java Runtime Environment における JMX の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5070 2013-01-23 16:13 2012-10-16 Show GitHub Exploit DB Packet Storm
225612 7.5 危険 VMware - VMware SpringSource Spring Framework における重要な情報を取得される脆弱性 CWE-16
環境設定
CVE-2011-2730 2013-01-23 14:03 2011-09-9 Show GitHub Exploit DB Packet Storm
225613 5 警告 サン・マイクロシステムズ - Oracle Java SE の Java Runtime Environment における Deployment の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5067 2013-01-22 17:36 2012-10-16 Show GitHub Exploit DB Packet Storm
225614 3.7 注意 libvirt.org - libvirt における異なるデバイスを関連づける脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2693 2013-01-22 17:19 2012-06-17 Show GitHub Exploit DB Packet Storm
225615 5 警告 GNOME Project - gdk-pixbuf の io-xbm.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-2370 2013-01-22 17:15 2012-04-14 Show GitHub Exploit DB Packet Storm
225616 7.5 危険 IBM - IBM Rational Automation Framework におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4816 2013-01-22 17:12 2012-12-14 Show GitHub Exploit DB Packet Storm
225617 2.1 注意 Linux - Linux Kernel と一緒に配布される hypervkvpd における Netlink 通信を偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-2669 2013-01-22 17:11 2012-07-16 Show GitHub Exploit DB Packet Storm
225618 3.6 注意 X.Org Foundation
XFree86 Project
- X.Org および XFree86 用 xfs フォントサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-1699 2013-01-22 16:45 2012-07-24 Show GitHub Exploit DB Packet Storm
225619 5 警告 The PHP Group - PHP の ext/openssl/openssl.c におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-6113 2013-01-22 16:06 2012-03-16 Show GitHub Exploit DB Packet Storm
225620 4.9 警告 シスコシステムズ - Cisco Nexus 7000 シリーズのスイッチ上で稼働する Cisco NX-OS におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-6396 2013-01-22 16:05 2013-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197941 6.7 MEDIUM
Local
siemens simatic_pcs_7
simatic_wincc
simatic_wincc_runtime_advanced
sinema_server
simatic_net_pc
simatic_prosave
simatic_pcs_neo
simatic_automatic_tool
simatic_step_7
simatic_wincc_…
A vulnerability has been identified in SIMATIC Automation Tool (All versions < V4 SP2), SIMATIC NET PC Software V14 (All versions < V14 SP1 Update 14), SIMATIC NET PC Software V15 (All versions), SIM… - CVE-2020-7580 2024-11-21 14:37 2020-06-11 Show GitHub Exploit DB Packet Storm
197942 8.6 HIGH
Network
mosc_project mosc mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed by the `eval` function, resulting in code execution. CWE-94
Code Injection
CVE-2020-7672 2024-11-21 14:37 2020-06-11 Show GitHub Exploit DB Packet Storm
197943 7.5 HIGH
Network
goliath_project goliath goliath through 1.0.6 allows request smuggling attacks where goliath is used as a backend and a frontend proxy also being vulnerable. It is possible to conduct HTTP request smuggling attacks by sendi… CWE-444
HTTP Request Smuggling
CVE-2020-7671 2024-11-21 14:37 2020-06-11 Show GitHub Exploit DB Packet Storm
197944 7.5 HIGH
Network
ohler agoo agoo prior to 2.14.0 allows request smuggling attacks where agoo is used as a backend and a frontend proxy also being vulnerable. HTTP pipelining issues and request smuggling attacks might be possibl… CWE-444
HTTP Request Smuggling
CVE-2020-7670 2024-11-21 14:37 2020-06-11 Show GitHub Exploit DB Packet Storm
197945 6.8 MEDIUM
Physics
freebsd
netapp
freebsd
clustered_data_ontap
In FreeBSD 12.1-STABLE before r361918, 12.1-RELEASE before p6, 11.4-STABLE before r361919, 11.3-RELEASE before p10, and 11.4-RC2 before p1, an invalid memory location may be used for HID items if the… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-7456 2024-11-21 14:37 2020-06-10 Show GitHub Exploit DB Packet Storm
197946 5.4 MEDIUM
Network
angularjs angular.js angular.js prior to 1.8.0 allows cross site scripting. The regex-based input HTML replacement may turn sanitized code into unsanitized one. Wrapping "<option>" elements in "<select>" ones changes par… CWE-79
Cross-site Scripting
CVE-2020-7676 2024-11-21 14:37 2020-06-8 Show GitHub Exploit DB Packet Storm
197947 7.5 HIGH
Network
url-regex_project url-regex all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-7661 2024-11-21 14:37 2020-06-5 Show GitHub Exploit DB Packet Storm
197948 7.5 HIGH
Network
websocket-extensions_project
debian
canonical
websocket-extensions
debian_linux
ubuntu_linux
websocket-extensions ruby module prior to 0.1.5 allows Denial of Service (DoS) via Regex Backtracking. The extension parser may take quadratic time when parsing a header containing an unclosed string… NVD-CWE-Other
CVE-2020-7663 2024-11-21 14:37 2020-06-3 Show GitHub Exploit DB Packet Storm
197949 7.5 HIGH
Network
websocket-extensions_project websocket-extensions websocket-extensions npm module prior to 0.1.4 allows Denial of Service (DoS) via Regex Backtracking. The extension parser may take quadratic time when parsing a header containing an unclosed string … NVD-CWE-Other
CVE-2020-7662 2024-11-21 14:37 2020-06-3 Show GitHub Exploit DB Packet Storm
197950 8.1 HIGH
Network
verizon serialize-javascript serialize-javascript prior to 3.1.0 allows remote attackers to inject arbitrary code via the function "deleteFunctions" within "index.js". CWE-502
 Deserialization of Untrusted Data
CVE-2020-7660 2024-11-21 14:37 2020-06-2 Show GitHub Exploit DB Packet Storm