Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225671 4 警告 GroundWork - GroundWork Monitor Enterprise の Nagios-App コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3505 2013-05-9 16:22 2013-03-7 Show GitHub Exploit DB Packet Storm
225672 5.5 警告 GroundWork - GroundWork Monitor Enterprise の MONARCH コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3504 2013-05-9 16:21 2013-03-7 Show GitHub Exploit DB Packet Storm
225673 3.5 注意 GroundWork - GroundWork Monitor Enterprise の MONARCH コンポーネントにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3503 2013-05-9 16:18 2013-03-7 Show GitHub Exploit DB Packet Storm
225674 6.5 警告 GroundWork - GroundWork Monitor Enterprise における任意のコマンドを実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3502 2013-05-9 16:17 2013-03-7 Show GitHub Exploit DB Packet Storm
225675 4.3 警告 GroundWork - GroundWork Monitor Enterprise におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3501 2013-05-9 16:16 2013-03-7 Show GitHub Exploit DB Packet Storm
225676 7.5 危険 GroundWork - GroundWork Monitor Enterprise におけるファイルシステムの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3500 2013-05-9 16:15 2013-03-7 Show GitHub Exploit DB Packet Storm
225677 7.5 危険 GroundWork - GroundWork Monitor Enterprise における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3499 2013-05-9 16:07 2013-03-7 Show GitHub Exploit DB Packet Storm
225678 6.3 警告 シスコシステムズ - Cisco ISR G2 ルータ上で稼働する Cisco IOS の ISM モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2013-1241 2013-05-9 15:43 2013-05-7 Show GitHub Exploit DB Packet Storm
225679 1.9 注意 Linux - Linux kernel の net/core/scm.c におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1958 2013-05-9 11:18 2013-04-5 Show GitHub Exploit DB Packet Storm
225680 2.1 注意 Linux - Linux Kernel の kernel/user_namespace.c におけるファイルシステムの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1956 2013-05-9 11:11 2013-04-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212491 7.5 HIGH
Network
contiki-os contiki An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when processing IPv6 extension headers in ext_hdr_options_process in net/ipv6/uip6.c. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-13984 2024-11-21 14:02 2020-12-12 Show GitHub Exploit DB Packet Storm
212492 5.3 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress was prone to a SQL injection within divelog.php, allowing unauthenticated users to retrieve data from the database via the divelog.php filter_diver parameter. CWE-89
SQL Injection
CVE-2020-14207 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
212493 6.1 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress is prone to unauthenticated XSS within the filter function (via an arbitrary parameter). CWE-79
Cross-site Scripting
CVE-2020-14206 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
212494 5.3 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate th… CWE-862
 Missing Authorization
CVE-2020-14205 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
212495 6.5 MEDIUM
Network
apache apisix In Apache APISIX, the user enabled the Admin API and deleted the Admin API access IP restriction rules. Eventually, the default token is allowed to access APISIX management data. This affects version… NVD-CWE-Other
CVE-2020-13945 2024-11-21 14:02 2020-12-8 Show GitHub Exploit DB Packet Storm
212496 4.3 MEDIUM
Network
samba
redhat
samba
enterprise_linux
storage
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be u… - CVE-2020-14318 2024-11-21 14:02 2020-12-4 Show GitHub Exploit DB Packet Storm
212497 5.3 MEDIUM
Network
apache
quarkus
oracle
netapp
httpclient
quarkus
primavera_unifier
peoplesoft_enterprise_peopletools
data_integrator
peoplesoft_enterprise_pt_peopletools
nosql_database
retail_customer_management_and_segmenta…
Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library as java.net.URI object and pick the wrong target host… NVD-CWE-noinfo
CVE-2020-13956 2024-11-21 14:02 2020-12-3 Show GitHub Exploit DB Packet Storm
212498 9.8 CRITICAL
Network
hcltech domino HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an attacker to crash Domino or execute attacker-control… CWE-120
Classic Buffer Overflow
CVE-2020-14260 2024-11-21 14:02 2020-12-2 Show GitHub Exploit DB Packet Storm
212499 8.1 HIGH
Network
linux
netapp
linux_kernel
cloud_backup
a250_firmware
fas_500f_firmware
aff_500f_firmware
solidfire_baseboard_management_controller_firmware
An out-of-bounds memory write flaw was found in how the Linux kernel’s Voice Over IP H.323 connection tracking functionality handled connections on ipv6 port 1720. This flaw allows an unauthenticated… - CVE-2020-14305 2024-11-21 14:02 2020-12-2 Show GitHub Exploit DB Packet Storm
212500 5.4 MEDIUM
Network
atlassian automation_for_jira Affected versions of Automation for Jira - Server allowed remote attackers to read and render files as mustache templates in files inside the WEB-INF/classes & <jira-installation>/jira/bin directorie… CWE-74
Injection
CVE-2020-14193 2024-11-21 14:02 2020-12-1 Show GitHub Exploit DB Packet Storm