Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226061 2.6 注意 Jun.I - Angel Browser における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2013-3642 2013-06-18 17:51 2013-06-11 Show GitHub Exploit DB Packet Storm
226062 4.3 警告 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4612 2013-06-18 17:26 2013-01-18 Show GitHub Exploit DB Packet Storm
226063 10 危険 Project Redcap - REDCap における脆弱性 CWE-noinfo
情報不足
CVE-2013-4611 2013-06-18 17:25 2013-01-25 Show GitHub Exploit DB Packet Storm
226064 10 危険 Project Redcap - REDCap のデータエントリフォームにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-4610 2013-06-18 17:24 2013-02-1 Show GitHub Exploit DB Packet Storm
226065 6.5 警告 Project Redcap - REDCap におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4609 2013-06-18 17:23 2013-02-15 Show GitHub Exploit DB Packet Storm
226066 4.3 警告 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4608 2013-06-18 17:21 2013-03-1 Show GitHub Exploit DB Packet Storm
226067 6.5 警告 Project Redcap - REDCap における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-6567 2013-06-18 17:20 2012-07-27 Show GitHub Exploit DB Packet Storm
226068 4.3 警告 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6566 2013-06-18 17:20 2012-08-17 Show GitHub Exploit DB Packet Storm
226069 3.5 注意 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6565 2013-06-18 17:18 2012-08-24 Show GitHub Exploit DB Packet Storm
226070 4.3 警告 Project Redcap - REDCap におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6564 2013-06-18 17:05 2012-10-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209201 7.5 HIGH
Network
nec esmpro_manager This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ESMPRO Manager 6.42. Authentication is not required to exploit this vulnerability. The sp… CWE-22
Path Traversal
CVE-2020-27859 2024-11-21 14:21 2021-01-21 Show GitHub Exploit DB Packet Storm
209202 5.4 MEDIUM
Network
rocketgenius gravityforms A stored Cross-Site Scripting (XSS) vulnerability in the survey feature in Rocketgenius Gravity Forms before 2.4.21 allows remote attackers to inject arbitrary web script or HTML via a textarea field… CWE-79
Cross-site Scripting
CVE-2020-27852 2024-11-21 14:21 2021-01-20 Show GitHub Exploit DB Packet Storm
209203 5.4 MEDIUM
Network
rocketgenius gravityforms Multiple stored HTML injection vulnerabilities in the "poll" and "quiz" features in an additional paid add-on of Rocketgenius Gravity Forms before 2.4.21 allows remote attackers to inject arbitrary H… CWE-79
Cross-site Scripting
CVE-2020-27851 2024-11-21 14:21 2021-01-20 Show GitHub Exploit DB Packet Storm
209204 4.8 MEDIUM
Network
rocketgenius gravityforms A stored Cross-Site Scripting (XSS) vulnerability in forms import feature in Rocketgenius Gravity Forms before 2.4.21 allows remote attackers to inject arbitrary web script or HTML via the import of … CWE-79
Cross-site Scripting
CVE-2020-27850 2024-11-21 14:21 2021-01-20 Show GitHub Exploit DB Packet Storm
209205 7.5 HIGH
Network
arcserve d2d This vulnerability allows remote attackers to disclose sensitive information on affected installations of CA Arcserve D2D 16.5. Authentication is not required to exploit this vulnerability. The speci… CWE-611
XXE
CVE-2020-27858 2024-11-21 14:21 2021-01-21 Show GitHub Exploit DB Packet Storm
209206 8.8 HIGH
Network
zohocorp manageengine_applications_manager Zoho ManageEngine Applications Manager before 14 build 14880 allows an authenticated SQL Injection via a crafted Alarmview request. CWE-89
SQL Injection
CVE-2020-27733 2024-11-21 14:21 2021-01-20 Show GitHub Exploit DB Packet Storm
209207 5.5 MEDIUM
Local
totolink a702r_firmware Directory Indexing in Login Portal of Login Portal of TOTOLINK-A702R-V1.0.0-B20161227.1023 allows attacker to access /icons/ directories via GET Parameter. CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-27368 2024-11-21 14:21 2021-01-15 Show GitHub Exploit DB Packet Storm
209208 9.8 CRITICAL
Network
loxone miniserver_gen_1_firmware Loxone Miniserver devices with firmware before 11.1 (aka 11.1.9.3) are unable to use an authentication method that is based on the "signature of the update package." Therefore, these devices (or atta… CWE-287
Improper Authentication
CVE-2020-27488 2024-11-21 14:21 2021-01-14 Show GitHub Exploit DB Packet Storm
209209 9.8 CRITICAL
Network
r-project cran The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD… CWE-22
Path Traversal
CVE-2020-27637 2024-11-21 14:21 2021-01-12 Show GitHub Exploit DB Packet Storm
209210 7.8 HIGH
Local
deltaww cncsoft-b Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a type confusion issue while processing project files, which may allow an attacker to execute arbitrary code. CWE-843
Type Confusion
CVE-2020-27293 2024-11-21 14:21 2021-01-12 Show GitHub Exploit DB Packet Storm