Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225801 2.6 注意 アドビシステムズ - Adobe Reader X における Sandbox 機能が回避される脆弱性 CWE-Other
その他
- 2013-05-31 12:04 2013-05-31 Show GitHub Exploit DB Packet Storm
225802 2.6 注意 アップル - Safari における情報漏えいの脆弱性 CWE-Other
その他
- 2013-05-31 12:03 2013-05-31 Show GitHub Exploit DB Packet Storm
225803 7.2 危険 Google
LG Electronics
- LG Optimus G E973 上の Android 用 LG Hidden Menu における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3666 2013-05-30 16:39 2013-05-23 Show GitHub Exploit DB Packet Storm
225804 6.8 警告 IBM - UNIX 用の IBM Sterling Connect:Direct におけるファイルシステムの読み取り権限および書き込み権限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2989 2013-05-30 16:37 2013-05-14 Show GitHub Exploit DB Packet Storm
225805 4.3 警告 IBM - IBM Tivoli Monitoring の Tivoli Enterprise Portal browser クライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0576 2013-05-30 16:36 2013-05-17 Show GitHub Exploit DB Packet Storm
225806 4.3 警告 IBM - IBM WebSphere DataPower SOA アプライアンスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0499 2013-05-30 16:34 2013-05-17 Show GitHub Exploit DB Packet Storm
225807 7.2 危険 レッドハット - Red Hat livecd-tools における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2069 2013-05-30 14:07 2013-05-23 Show GitHub Exploit DB Packet Storm
225808 4.9 警告 マイクロソフト - Microsoft Windows の win32k.sys の EPATHOBJ::bFlatten 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3661 2013-05-29 16:54 2013-05-17 Show GitHub Exploit DB Packet Storm
225809 5 警告 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-2959 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
225810 3.5 注意 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2957 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210511 9.8 CRITICAL
Network
emlog emlog Vulnerability in emlog v6.0.0 allows user to upload webshells via zip plugin module. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21585 2024-11-21 14:12 2021-04-3 Show GitHub Exploit DB Packet Storm
210512 5.4 MEDIUM
Network
seeyon g6_government_collaborative_system Cross-Site Scripting (XSS) vulnerability in Zhiyuan G6 Government Collaboration System V6.1SP1, via the 'method' parameter to 'seeyon/hrSalary.do'. CWE-79
Cross-site Scripting
CVE-2020-20545 2024-11-21 14:12 2021-03-30 Show GitHub Exploit DB Packet Storm
210513 9.8 CRITICAL
Network
inspur clusterengine A Remote Code Execution vulnerability has been found in Inspur ClusterEngine V4.0. A remote attacker can send a malicious login packet to the control server CWE-88
Argument Injection
CVE-2020-21224 2024-11-21 14:12 2021-02-23 Show GitHub Exploit DB Packet Storm
210514 9.8 CRITICAL
Network
koa2-blog_project koa2-blog Sql injection vulnerability in koa2-blog 1.0.0 allows remote attackers to Injecting a malicious SQL statement via the name parameter to the signup page. CWE-89
SQL Injection
CVE-2020-21180 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210515 9.8 CRITICAL
Network
koa2-blog_project koa2-blog Sql injection vulnerability in koa2-blog 1.0.0 allows remote attackers to Injecting a malicious SQL statement via the name parameter to the signin page. CWE-89
SQL Injection
CVE-2020-21179 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210516 9.8 CRITICAL
Network
thinkjs thinkjs SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitrary SQL commands via the step parameter. CWE-89
SQL Injection
CVE-2020-21176 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210517 9.8 CRITICAL
Network
cmswing cmswing An issue was found in CMSWing project version 1.3.8, Because the rechargeAction function does not check the balance parameter, malicious parameters can execute arbitrary SQL commands. CWE-89
SQL Injection
CVE-2020-20296 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210518 9.8 CRITICAL
Network
cmswing cmswing An issue was found in CMSWing project version 1.3.8. Because the updateAction function does not check the detail parameter, malicious parameters can execute arbitrary SQL commands. CWE-89
SQL Injection
CVE-2020-20295 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210519 9.8 CRITICAL
Network
cmswing cmswing An issue was found in CMSWing project version 1.3.8. Because the log function does not check the log parameter, malicious parameters can execute arbitrary commands. CWE-89
SQL Injection
CVE-2020-20294 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm
210520 7.5 HIGH
Network
yccms yccms Directory traversal vulnerability in the yccms 3.3 project. The delete, deletesite, and deleteAll functions' improper judgment of the request parameters, triggers a directory traversal vulnerability. CWE-22
Path Traversal
CVE-2020-20290 2024-11-21 14:12 2021-02-2 Show GitHub Exploit DB Packet Storm