Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225781 6.8 警告 The GIMP Team - GIMP の ScriptFu Network Server における任意のコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2012-4245 2013-06-5 13:59 2012-08-31 Show GitHub Exploit DB Packet Storm
225782 10 危険 7-Zip - 7-zip における脆弱性 CWE-noinfo
情報不足
CVE-2008-6536 2013-06-4 18:15 2009-03-30 Show GitHub Exploit DB Packet Storm
225783 7.5 危険 libgsf
サイバートラスト株式会社
レッドハット
- libgsf の ole_init_info() 関数におけるヒープオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-4514 2013-06-4 18:05 2006-11-30 Show GitHub Exploit DB Packet Storm
225784 4.3 警告 IBM - IBM WebSphere Application Server および WebSphere Message Broker におけるメッセージの署名を偽装される脆弱性 CWE-Other
その他
CVE-2013-0482 2013-06-4 17:09 2013-04-29 Show GitHub Exploit DB Packet Storm
225785 8.5 危険 Mutiny Limited - Mutiny にディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0136 2013-06-4 15:08 2013-05-15 Show GitHub Exploit DB Packet Storm
225786 4.3 警告 シスコシステムズ - Cisco Prime Infrastructure の無線設定モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1247 2013-06-4 14:06 2013-05-21 Show GitHub Exploit DB Packet Storm
225787 6.8 警告 シスコシステムズ - Cisco TelePresence System Software におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1246 2013-06-4 14:04 2013-05-29 Show GitHub Exploit DB Packet Storm
225788 6.5 警告 TIBCO Software - TIBCO Silver Mobile のサーバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3315 2013-06-4 13:59 2013-05-8 Show GitHub Exploit DB Packet Storm
225789 4.3 警告 PhotoGalleryCreator - WordPress 用 GRAND FlAGallery プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3261 2013-06-4 13:55 2013-05-20 Show GitHub Exploit DB Packet Storm
225790 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3328 2013-06-3 15:58 2013-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213541 8.8 HIGH
Network
apache
debian
oracle
velocity_engine
wss4j
debian_linux
retail_order_broker
banking_platform
communications_network_integrity
banking_enterprise_default_management
banking_party_management
utiliti…
An attacker that is able to modify Velocity templates may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account running the Servlet container. This appl… NVD-CWE-noinfo
CVE-2020-13936 2024-11-21 14:02 2021-03-10 Show GitHub Exploit DB Packet Storm
213542 7.5 HIGH
Network
apache
oracle
thrift
hive
communications_cloud_native_core_network_slice_selection_function
communications_cloud_native_core_policy
In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service. CWE-400
 Uncontrolled Resource Consumption
CVE-2020-13949 2024-11-21 14:02 2021-02-13 Show GitHub Exploit DB Packet Storm
213543 6.1 MEDIUM
Network
apache
oracle
activemq
communications_session_route_manager
communications_session_report_manager
An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the message.jsp page of Apache ActiveMQ versions 5.15.12 through 5.16.0. CWE-79
Cross-site Scripting
CVE-2020-13947 2024-11-21 14:02 2021-02-9 Show GitHub Exploit DB Packet Storm
213544 5.9 MEDIUM
Network
fedoraproject fedora A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all versions Red Hat Enterprise Linux, where it listens on any interface and accepts queri… NVD-CWE-Other
CVE-2020-14312 2024-11-21 14:02 2021-02-6 Show GitHub Exploit DB Packet Storm
213545 6.5 MEDIUM
Network
hcltechsw onetest_performance HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID. CWE-613
 Insufficient Session Expiration
CVE-2020-14247 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213546 7.5 HIGH
Network
hcltechsw onetest_performance HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potentially decode the encoded credentials. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-14246 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213547 9.8 CRITICAL
Network
hcltechsw onetest_performance HCL OneTest UI V9.5, V10.0, and V10.1 does not perform authentication for functionality that either requires a provable user identity or consumes a significant amount of resources. CWE-306
Missing Authentication for Critical Function
CVE-2020-14245 2024-11-21 14:02 2021-02-4 Show GitHub Exploit DB Packet Storm
213548 7.5 HIGH
Network
hcltech digital_experience HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to unauthorized parties via crafted requests. These affect containers only. These do not affect traditio… NVD-CWE-noinfo
CVE-2020-14255 2024-11-21 14:02 2021-02-3 Show GitHub Exploit DB Packet Storm
213549 4.9 MEDIUM
Network
hcltech digital_experience HCL Digital Experience 8.5, 9.0, and 9.5 exposes information about the server to unauthorized users. NVD-CWE-noinfo
CVE-2020-14221 2024-11-21 14:02 2021-02-3 Show GitHub Exploit DB Packet Storm
213550 4.3 MEDIUM
Network
atlassian crucible
fisheye
Affected versions of Atlassian Fisheye and Crucible allow remote attackers to view a product's SEN via an Information Disclosure vulnerability in the x-asen response header from Atlassian Analytics. … CWE-200
Information Exposure
CVE-2020-14192 2024-11-21 14:02 2021-02-2 Show GitHub Exploit DB Packet Storm