Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225751 7.2 危険 アップル - CUPS における root として任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5519 2013-06-7 11:50 2012-11-20 Show GitHub Exploit DB Packet Storm
225752 7.5 危険 アップル
OpenSSL Project
- OpenSSL の crypto/buffer/buffer.c における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2012-2131 2013-06-7 11:36 2012-04-23 Show GitHub Exploit DB Packet Storm
225753 7.5 危険 アップル
VMware
OpenSSL Project
- OpenSSL の asn1_d2i_read_bio 関数におけるバッファオーバーフロー攻撃を誘発される脆弱性 CWE-119
バッファエラー
CVE-2012-2110 2013-06-7 11:33 2012-04-19 Show GitHub Exploit DB Packet Storm
225754 5 警告 アップル
VMware
OpenSSL Project
- OpenSSL の Server Gated Cryptography の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4619 2013-06-7 11:26 2012-01-4 Show GitHub Exploit DB Packet Storm
225755 4.3 警告 アップル
VMware
OpenSSL Project
- OpenSSL におけるサービス運用妨害 (表明違反) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4577 2013-06-7 11:21 2012-01-4 Show GitHub Exploit DB Packet Storm
225756 9.3 危険 アップル
VMware
OpenSSL Project
- OpenSSL におけるメモリ二重開放の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4109 2013-06-7 11:15 2012-01-4 Show GitHub Exploit DB Packet Storm
225757 5 警告 アップル
OpenSSL Project
- OpenSSL の ephemeral ECDH ciphersuite におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3210 2013-06-7 11:07 2011-09-6 Show GitHub Exploit DB Packet Storm
225758 5 警告 アップル
OpenSSL Project
レッドハット
- OpenSSL の crypto/x509/x509_vfy.c における CRL 確認を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-3207 2013-06-7 10:58 2011-09-6 Show GitHub Exploit DB Packet Storm
225759 2.6 注意 アップル
OpenSSL Project
- OpenSSL の ECC サブシステムにおける秘密鍵を特定される脆弱性 CWE-310
暗号の問題
CVE-2011-1945 2013-06-7 10:54 2011-05-31 Show GitHub Exploit DB Packet Storm
225760 10 危険 アドビシステムズ
Google
- Google Chrome 上で稼働する Adobe Flash Player におけるサービス運用妨害 (メモリ破損) の脆弱性 CWE-119
バッファエラー
CVE-2012-0724 2013-06-6 18:10 2012-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201061 8.8 HIGH
Network
plone plone SQL Injection in DTML or in connection objects in Plone 4.0 through 5.2.1 allows users to perform unwanted SQL queries. (This is a problem in Zope.) CWE-89
SQL Injection
CVE-2020-7939 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
201062 8.8 HIGH
Network
plone plone plone.restapi in Plone 5.2.0 through 5.2.1 allows users with a certain privilege level to escalate their privileges up to the highest level. NVD-CWE-noinfo
CVE-2020-7938 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
201063 5.4 MEDIUM
Network
plone plone An XSS issue in the title field in Plone 5.0 through 5.2.1 allows users with a certain privilege level to insert JavaScript that will be executed when other users access the site. CWE-79
Cross-site Scripting
CVE-2020-7937 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
201064 6.1 MEDIUM
Network
plone plone An open redirect on the login form (and possibly other places) in Plone 4.0 through 5.2.1 allows an attacker to craft a link to a Plone Site that, when followed, and possibly after login, will redire… CWE-601
Open Redirect
CVE-2020-7936 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
201065 8.8 HIGH
Network
jfrog artifactory In JFrog Artifactory 5.x and 6.x, insecure FreeMarker template processing leads to remote code execution, e.g., by modifying a .ssh/authorized_keys file. Patches are available for various versions be… NVD-CWE-noinfo
CVE-2020-7931 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
201066 4.8 MEDIUM
Network
eaton 5p_850_firmware An issue was discovered on Eaton 5P 850 devices. The Ubicacion SAI field allows XSS attacks by an administrator. CWE-79
Cross-site Scripting
CVE-2020-7915 2024-11-21 14:38 2020-01-23 Show GitHub Exploit DB Packet Storm
201067 9.8 CRITICAL
Network
get-npm-package-version_project get-npm-package-version The package get-npm-package-version before 1.0.7 are vulnerable to Command Injection via main function in index.js. CWE-77
Command Injection
CVE-2020-7795 2024-11-21 14:37 2022-08-2 Show GitHub Exploit DB Packet Storm
201068 9.8 CRITICAL
Network
node-import_project node-import This affects all versions of package node-import. The "params" argument of module function can be controlled by users without any sanitization.b. This is then provided to the “eval” function located … NVD-CWE-noinfo
CVE-2020-7678 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm
201069 9.8 CRITICAL
Network
thenify_project
debian
fedoraproject
thenify
debian_linux
fedora
This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any san… NVD-CWE-noinfo
CVE-2020-7677 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm
201070 4.9 MEDIUM
Network
snyk broker This affects the package snyk-broker before 4.73.0. It allows arbitrary file reads for users with access to Snyk's internal network via directory traversal. CWE-22
Path Traversal
CVE-2020-7649 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm