Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225891 2.1 注意 User Relationships project - Drupal 用 User Relationships モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0225 2013-03-22 16:15 2013-01-23 Show GitHub Exploit DB Packet Storm
225892 4.4 警告 Heshan Wanigasooriya - Drupal 用 Video モジュールにおける任意の PHP コードを実行される脆弱性 CWE-16
環境設定
CVE-2013-0224 2013-03-22 16:15 2013-01-23 Show GitHub Exploit DB Packet Storm
225893 6.8 警告 Leighton Whiting - Drupal 用 Mark Complete モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0207 2013-03-22 16:14 2013-01-16 Show GitHub Exploit DB Packet Storm
225894 6 警告 guybedford - Drupal 用 Live CSS モジュールにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-0206 2013-03-22 16:13 2013-01-9 Show GitHub Exploit DB Packet Storm
225895 6.8 警告 Klaus Purer - Drupal 用 RESTful Web Services モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0205 2013-03-22 16:13 2013-01-16 Show GitHub Exploit DB Packet Storm
225896 3.6 注意 レッドハット - libvirt におけるファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1766 2013-03-22 16:08 2013-03-20 Show GitHub Exploit DB Packet Storm
225897 5 警告 ZoneMinder - ZoneMinder におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0332 2013-03-22 15:52 2011-05-30 Show GitHub Exploit DB Packet Storm
225898 7.5 危険 ZoneMinder - ZoneMinder の includes/functions.php における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-0232 2013-03-22 15:51 2013-01-25 Show GitHub Exploit DB Packet Storm
225899 5.1 警告 David King - Vino における UPnP ルータのポートがオープンになる問題 CWE-Other
その他
CVE-2011-1165 2013-03-22 14:43 2013-03-12 Show GitHub Exploit DB Packet Storm
225900 4.6 警告 David King - Vino における外部ネットワークに接続される脆弱性 CWE-16
環境設定
CVE-2011-1164 2013-03-22 14:24 2013-03-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210701 7.8 HIGH
Local
valvesoftware steam_client An issue was discovered in Valve Steam Client 2.10.91.91. The installer allows local users to gain NT AUTHORITY\SYSTEM privileges because some parts of %PROGRAMFILES(X86)%\Steam and/or %COMMONPROGRAM… CWE-362
Race Condition
CVE-2020-15530 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210702 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user installs a game or performs a verify/repair operation. The issue exists because of weak fil… CWE-667
CWE-732
 Improper Locking
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15529 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210703 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user starts or uninstalls a game because of weak file permissions and missing file integrity che… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15528 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210704 7.8 HIGH
Local
python
netapp
python
snapcenter
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native appl… CWE-427
CWE-908
 Uncontrolled Search Path Element
 Use of Uninitialized Resource
CVE-2020-15523 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
210705 8.8 HIGH
Network
veeam veeam_availability_suite
veeam_backup_\&_replication
VeeamFSR.sys in Veeam Availability Suite before 10 and Veeam Backup & Replication before 10 has no device object DACL, which allows unprivileged users to achieve total control over filesystem I/O req… CWE-862
 Missing Authorization
CVE-2020-15518 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
210706 2.3 LOW
Local
qemu
debian
qemu
debian_linux
In QEMU 4.2.0, a MemoryRegionOps object may lack read/write callback methods, leading to a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2020-15469 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
210707 7.5 HIGH
Network
libraw
fedoraproject
debian
libraw
fedora
debian_linux
LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed… CWE-20
 Improper Input Validation 
CVE-2020-15503 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210708 7.5 HIGH
Network
duckduckgo duckduckgo The DuckDuckGo application through 5.58.0 for Android, and through 7.47.1.0 for iOS, sends hostnames of visited web sites within HTTPS .ico requests to servers in the duckduckgo.com domain, which mig… CWE-200
Information Exposure
CVE-2020-15502 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210709 6.1 MEDIUM
Network
tileserver tileservergl An issue was discovered in server.js in TileServer GL through 3.0.0. The content of the key GET parameter is reflected unsanitized in an HTTP response for the application's main page, causing reflect… CWE-79
Cross-site Scripting
CVE-2020-15500 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
210710 9.8 CRITICAL
Network
wavlink wl-wn530hg4_firmware An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple buffer overflow vulnerabilities exist in CGI scripts, leading to remote code execution with root privileges. (The … CWE-120
Classic Buffer Overflow
CVE-2020-15490 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm