Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225741 2.1 注意 アップル - Apple Mac OS X の XNU kernel における KASLR 保護メカニズムを破られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3952 2013-06-7 15:56 2013-04-26 Show GitHub Exploit DB Packet Storm
225742 2.1 注意 アップル - Apple Mac OS X の XNU カーネルの posix_spawn システムコールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3949 2013-06-7 14:58 2013-04-26 Show GitHub Exploit DB Packet Storm
225743 4.3 警告 アップル - Apple iOS における任意のアプリケーションのインストールを誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3948 2013-06-7 14:57 2013-04-26 Show GitHub Exploit DB Packet Storm
225744 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0988 2013-06-7 13:54 2013-05-22 Show GitHub Exploit DB Packet Storm
225745 9.3 危険 アップル - Apple QuickTime における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0987 2013-06-7 13:48 2013-05-22 Show GitHub Exploit DB Packet Storm
225746 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0986 2013-06-7 13:42 2013-05-22 Show GitHub Exploit DB Packet Storm
225747 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0989 2013-06-7 13:38 2013-05-22 Show GitHub Exploit DB Packet Storm
225748 7.5 危険 アップル
Ruby on Rails project
- Ruby on Rails における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-0333 2013-06-7 12:18 2013-01-28 Show GitHub Exploit DB Packet Storm
225749 10 危険 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0277 2013-06-7 12:09 2013-02-11 Show GitHub Exploit DB Packet Storm
225750 4.3 警告 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord における attr_protected 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0276 2013-06-7 12:07 2013-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201261 6.1 MEDIUM
Network
lenovo enterprise_network_disk A reflective cross-site scripting (XSS) vulnerability was reported in Lenovo Enterprise Network Disk prior to version 6.1 patch 6 hotfix 4 that could allow execution of code in an authenticated user'… CWE-79
Cross-site Scripting
CVE-2020-8347 2024-11-21 14:38 2020-09-25 Show GitHub Exploit DB Packet Storm
201262 7.8 HIGH
Local
lenovo 63_firmware
h50-30g_firmware
m4500_firmware
m4550_firmware
qitian_4500_firmware
qitian_b4550_firmware
qitian_m4550_firmware
thinkcentre_e73_firmware
thinkcentre_e73s_firmware<…
A potential vulnerability in the SMI callback function used in the EEPROM driver in some Lenovo Desktops and ThinkStation models may allow arbitrary code execution NVD-CWE-noinfo
CVE-2020-8333 2024-11-21 14:38 2020-09-25 Show GitHub Exploit DB Packet Storm
201263 7.5 HIGH
Network
citrix xenmobile_server Improper authentication in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server before 10.9 RP5 lea… CWE-287
Improper Authentication
CVE-2020-8253 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201264 7.8 HIGH
Local
nodejs
opensuse
fedoraproject
node.js
leap
fedora
The implementation of realpath in libuv < 10.22.1, < 12.18.4, and < 14.9.0 used within Node.js incorrectly determined the buffer size which can result in a buffer overflow if the resolved path is lon… CWE-120
Classic Buffer Overflow
CVE-2020-8252 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201265 7.5 HIGH
Network
nodejs
fedoraproject
node.js
fedora
Node.js < 14.11.0 is vulnerable to HTTP denial of service (DoS) attacks based on delayed requests submission which can make the server unable to accept new connections. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8251 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201266 8.8 HIGH
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
sd-wan_wanop
Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix A… CWE-269
 Improper Privilege Management
CVE-2020-8247 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201267 7.5 HIGH
Network
citrix application_delivery_controller_firmware
gateway
netscaler_gateway
sd-wan_wanop
Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix A… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8246 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201268 7.5 HIGH
Network
json-bigint_project json-bigint Prototype pollution in json-bigint npm package < 1.0.0 may lead to a denial-of-service (DoS) attack. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-8237 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201269 7.5 HIGH
Network
nextcloud desktop A cleartext storage of sensitive information in Nextcloud Desktop Client 2.6.4 gave away information about used proxies and their authentication credentials. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-8225 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm
201270 7.4 HIGH
Network
nodejs
opensuse
fedoraproject
node.js
leap
fedora
Node.js < 12.18.4 and < 14.11 can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users. The payloads can be crafted by an attacker to hijack user sessions,… CWE-444
HTTP Request Smuggling
CVE-2020-8201 2024-11-21 14:38 2020-09-19 Show GitHub Exploit DB Packet Storm