Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225611 5 警告 IBM - IBM Data Studio の Web コンソールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2981 2013-06-18 15:45 2013-06-14 Show GitHub Exploit DB Packet Storm
225612 6.8 警告 IBM - IBM Data Studio の Web コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2980 2013-06-18 15:44 2013-06-14 Show GitHub Exploit DB Packet Storm
225613 7.1 危険 IOServer - IOServer の DNP3 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2783 2013-06-18 12:38 2013-06-10 Show GitHub Exploit DB Packet Storm
225614 7.5 危険 シーメンス - SIMATIC PCS 7 で使用される Siemens WinCC の Web Navigator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3957 2013-06-18 11:16 2013-06-14 Show GitHub Exploit DB Packet Storm
225615 10 危険 オラクル - Oracle Java SE の Java Runtime Environment におけるセキュリティ・レベルを回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-1489 2013-06-17 17:01 2013-02-1 Show GitHub Exploit DB Packet Storm
225616 5 警告 ヒューレット・パッカード - HP Insight Diagnostics の hpdiags/frontend2/help/pageview.php における任意の HTML ファイルをインクルードされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-3575 2013-06-17 14:25 2013-06-10 Show GitHub Exploit DB Packet Storm
225617 7.8 危険 ヒューレット・パッカード - HP Insight Diagnostics の hpdiags/frontend2/commands/saveCompareConfig.php における絶対パストラバーサルの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3574 2013-06-17 14:23 2013-06-10 Show GitHub Exploit DB Packet Storm
225618 10 危険 ヒューレット・パッカード - HP Insight Diagnostics における不特定のインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3573 2013-06-17 14:22 2013-06-10 Show GitHub Exploit DB Packet Storm
225619 4.3 警告 シスコシステムズ - Cisco Video Surveillance Operations Manager におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3376 2013-06-17 14:22 2013-06-14 Show GitHub Exploit DB Packet Storm
225620 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3375 2013-06-17 14:21 2013-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213531 8.2 HIGH
Network
linuxfoundation the_update_framework Python TUF (The Update Framework) reference implementation before version 0.12 it will incorrectly trust a previously downloaded root metadata file which failed verification at download time. This al… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-15163 2024-11-21 14:04 2020-09-10 Show GitHub Exploit DB Packet Storm
213532 8.6 HIGH
Local
johnkerl miller In Miller (command line utility) using the configuration file support introduced in version 5.9.0, it is possible for an attacker to cause Miller to run arbitrary code by placing a malicious `.mlrrc`… CWE-427
 Uncontrolled Search Path Element
CVE-2020-15167 2024-11-21 14:04 2020-09-3 Show GitHub Exploit DB Packet Storm
213533 8.8 HIGH
Network
sensiolabs
fedoraproject
httpclient
symfony
fedora
In Symfony before versions 4.4.13 and 5.1.5, the CachingHttpClient class from the HttpClient Symfony component relies on the HttpCache class to handle requests. HttpCache uses internal headers like X… - CVE-2020-15094 2024-11-21 14:04 2020-09-3 Show GitHub Exploit DB Packet Storm
213534 9.8 CRITICAL
Network
duffel paginator There is a vulnerability in Paginator (Elixir/Hex package) which makes it susceptible to Remote Code Execution (RCE) attacks via input parameters to the paginate() function. This will potentially aff… - CVE-2020-15150 2024-11-21 14:04 2020-09-2 Show GitHub Exploit DB Packet Storm
213535 5.4 MEDIUM
Network
elementor website_builder An issue was discovered in the Elementor plugin through 2.9.13 for WordPress. An authenticated attacker can achieve stored XSS via the Name Your Template field. CWE-79
Cross-site Scripting
CVE-2020-15020 2024-11-21 14:04 2020-08-31 Show GitHub Exploit DB Packet Storm
213536 7.6 HIGH
Network
basercms basercms baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) and Remote Code Execution (RCE). This may be executed by logging in as a system administrator and uploading an executable script f… - CVE-2020-15159 2024-11-21 14:04 2020-08-29 Show GitHub Exploit DB Packet Storm
213537 7.3 HIGH
Network
basercms basercms baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) via arbitrary script execution. Admin access is required to exploit this vulnerability. The affected components is toolbar.php. Th… - CVE-2020-15155 2024-11-21 14:04 2020-08-29 Show GitHub Exploit DB Packet Storm
213538 7.3 HIGH
Network
basercms basercms baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) via arbitrary script execution. Admin access is required to exploit this vulnerability. The affected components are: content_field… CWE-79
Cross-site Scripting
CVE-2020-15154 2024-11-21 14:04 2020-08-29 Show GitHub Exploit DB Packet Storm
213539 9.1 CRITICAL
Network
chameleon_mini_live_debugger_project chameleon_mini_live_debugger Version 1.1.6-free of Chameleon Mini Live Debugger on Google Play Store may have had it's sources or permissions tampered by a malicious actor. The official maintainer of the package is recommending … - CVE-2020-15165 2024-11-21 14:04 2020-08-29 Show GitHub Exploit DB Packet Storm
213540 10.0 CRITICAL
Network
scratch-wiki scratch_login in Scratch Login (MediaWiki extension) before version 1.1, any account can be logged into by using the same username with leading, trailing, or repeated underscore(s), since those are treated as whit… CWE-74
Injection
CVE-2020-15164 2024-11-21 14:04 2020-08-29 Show GitHub Exploit DB Packet Storm