Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226061 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1158 2013-05-2 15:17 2013-04-30 Show GitHub Exploit DB Packet Storm
226062 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1157 2013-05-2 15:16 2013-04-30 Show GitHub Exploit DB Packet Storm
226063 5 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1156 2013-05-2 15:15 2013-04-30 Show GitHub Exploit DB Packet Storm
226064 4.3 警告 VMware - VMware vCenter Server における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3107 2013-05-2 14:59 2013-04-25 Show GitHub Exploit DB Packet Storm
226065 9 危険 VMware - VMware vCenter Server Appliance における任意のファイルを作成または上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3080 2013-05-2 14:49 2013-04-25 Show GitHub Exploit DB Packet Storm
226066 9 危険 VMware - VMware vCenter Server Appliance における任意のプログラムを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3079 2013-05-2 14:47 2013-04-25 Show GitHub Exploit DB Packet Storm
226067 6 警告 SAP - SAP BASIS Communication Services における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3063 2013-05-2 14:40 2013-04-16 Show GitHub Exploit DB Packet Storm
226068 6.5 警告 SAP - SAP Production Planning and Control の Engineering Workbench コンポーネントにおけるトランザクションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3062 2013-05-2 14:38 2013-04-16 Show GitHub Exploit DB Packet Storm
226069 6.5 警告 SAP - SAP industry solution for healthcare および SAP ERP Central Component におけるトランザクションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3061 2013-05-2 14:37 2013-04-16 Show GitHub Exploit DB Packet Storm
226070 7.1 危険 Galil - Galil RIO-47100 Pocket PLC におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0699 2013-05-2 14:34 2013-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209511 6.1 MEDIUM
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity… CWE-79
Cross-site Scripting
CVE-2020-24706 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209512 8.8 HIGH
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24705 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209513 6.1 MEDIUM
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.… CWE-79
Cross-site Scripting
CVE-2020-24704 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209514 8.8 HIGH
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24703 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209515 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-24599 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209516 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect. CWE-601
Open Redirect
CVE-2020-24598 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209517 5.9 MEDIUM
Network
gnome
fedoraproject
geary
fedora
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not confi… CWE-295
Improper Certificate Validation 
CVE-2020-24661 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209518 6.5 MEDIUM
Network
maltego maltego Maltego before 4.2.12 allows XXE attacks. CWE-611
XXE
CVE-2020-24656 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209519 9.8 CRITICAL
Network
expo expo secure-store in Expo through 2.16.1 on iOS provides the insecure kSecAttrAccessibleAlwaysThisDeviceOnly policy when WHEN_UNLOCKED_THIS_DEVICE_ONLY is used. NVD-CWE-noinfo
CVE-2020-24653 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209520 4.9 MEDIUM
Network
sonatype nexus In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user. CWE-522
 Insufficiently Protected Credentials
CVE-2020-24622 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm