Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226071 7.5 危険 VMware - VMware vCenter Chargeback Manager における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3520 2013-06-18 16:11 2013-06-11 Show GitHub Exploit DB Packet Storm
226072 10 危険 ヒューレット・パッカード - HP Integrated Lights-Out 3 および Integrated Lights-Out 4 における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-2338 2013-06-18 16:06 2013-06-17 Show GitHub Exploit DB Packet Storm
226073 4.3 警告 ヒューレット・パッカード - HP Service Manager および ServiceCenter におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2337 2013-06-18 16:05 2013-06-10 Show GitHub Exploit DB Packet Storm
226074 5 警告 ヒューレット・パッカード - HP Service Manager および ServiceCenter における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-2336 2013-06-18 16:05 2013-06-10 Show GitHub Exploit DB Packet Storm
226075 5 警告 IBM - IBM Data Studio の Web コンソールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2981 2013-06-18 15:45 2013-06-14 Show GitHub Exploit DB Packet Storm
226076 6.8 警告 IBM - IBM Data Studio の Web コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2980 2013-06-18 15:44 2013-06-14 Show GitHub Exploit DB Packet Storm
226077 7.1 危険 IOServer - IOServer の DNP3 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2783 2013-06-18 12:38 2013-06-10 Show GitHub Exploit DB Packet Storm
226078 7.5 危険 シーメンス - SIMATIC PCS 7 で使用される Siemens WinCC の Web Navigator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3957 2013-06-18 11:16 2013-06-14 Show GitHub Exploit DB Packet Storm
226079 10 危険 オラクル - Oracle Java SE の Java Runtime Environment におけるセキュリティ・レベルを回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-1489 2013-06-17 17:01 2013-02-1 Show GitHub Exploit DB Packet Storm
226080 5 警告 ヒューレット・パッカード - HP Insight Diagnostics の hpdiags/frontend2/help/pageview.php における任意の HTML ファイルをインクルードされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-3575 2013-06-17 14:25 2013-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209301 4.8 MEDIUM
Network
apereo opencast Opencast before versions 8.9 and 7.9 disables HTTPS hostname verification of its HTTP client used for a large portion of Opencast's HTTP requests. Hostname verification is an important part when usin… CWE-346
 Origin Validation Error
CVE-2020-26234 2024-11-21 14:19 2020-12-9 Show GitHub Exploit DB Packet Storm
209302 6.5 MEDIUM
Network
c2fo fast-csv Fast-csv is an npm package for parsing and formatting CSVs or any other delimited value file in node. In fast-cvs before version 4.3.6 there is a possible ReDoS vulnerability (Regular Expression Deni… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-26256 2024-11-21 14:19 2020-12-9 Show GitHub Exploit DB Packet Storm
209303 7.3 HIGH
Network
microsoft git_credential_manager_core Git Credential Manager Core (GCM Core) is a secure Git credential helper built on .NET Core that runs on Windows and macOS. In Git Credential Manager Core before version 2.0.289, when recursively clo… - CVE-2020-26233 2024-11-21 14:19 2020-12-9 Show GitHub Exploit DB Packet Storm
209304 9.1 CRITICAL
Network
getkirby panel
kirby
Kirby is a CMS. In Kirby CMS (getkirby/cms) before version 3.4.5, and Kirby Panel before version 2.5.14 , an editor with full access to the Kirby Panel can upload a PHP .phar file and execute it on t… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-26255 2024-11-21 14:19 2020-12-9 Show GitHub Exploit DB Packet Storm
209305 5.4 MEDIUM
Network
student_management_system_project_in_php_project student_management_system_project_in_php SourceCodester Student Management System Project in PHP version 1.0 is vulnerable to stored a cross-site scripting (XSS) via the 'add subject' tab. CWE-79
Cross-site Scripting
CVE-2020-25955 2024-11-21 14:19 2020-12-8 Show GitHub Exploit DB Packet Storm
209306 7.7 HIGH
Network
omniauth-apple_project omniauth-apple omniauth-apple is the OmniAuth strategy for "Sign In with Apple" (RubyGem omniauth-apple). In omniauth-apple before version 1.0.1 attackers can fake their email address during authentication. This vu… CWE-290
 Authentication Bypass by Spoofing
CVE-2020-26254 2024-11-21 14:19 2020-12-9 Show GitHub Exploit DB Packet Storm
209307 5.9 MEDIUM
Network
getkirby kirby
panel
Kirby is a CMS. In Kirby CMS (getkirby/cms) before version 3.3.6, and Kirby Panel before version 2.5.14 there is a vulnerability in which the admin panel may be accessed if hosted on a .dev domain. I… CWE-346
 Origin Validation Error
CVE-2020-26253 2024-11-21 14:19 2020-12-8 Show GitHub Exploit DB Packet Storm
209308 5.5 MEDIUM
Local
intland codebeamer An issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. The ReqIF XML data, used by the codebeamer ALM application to import projects, is parsed by insecurely configured software com… CWE-611
XXE
CVE-2020-26513 2024-11-21 14:19 2020-12-8 Show GitHub Exploit DB Packet Storm
209309 7.2 HIGH
Network
inspur nf8480m5_firmware
nf8260m5_firmware
ns5162m5_firmware
ns5488m5_firmware
ns5484m5_firmware
ns5482m5_firmware
nf5280m5_firmware
nf5468m5_firmware
nf5488m5-d_firmware
nf5180m5…
Inspur NF5266M5 through 3.21.2 and other server M5 devices allow remote code execution via administrator privileges. The Baseboard Management Controller (BMC) program of INSPUR server is weak in chec… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2020-26122 2024-11-21 14:19 2020-12-8 Show GitHub Exploit DB Packet Storm
209310 8.2 HIGH
Network
prestashop productcomments In the PrestaShop module "productcomments" before version 4.2.1, an attacker can use a Blind SQL injection to retrieve data or stop the MySQL service. The problem is fixed in 4.2.1 of the module. CWE-89
SQL Injection
CVE-2020-26248 2024-11-21 14:19 2020-12-4 Show GitHub Exploit DB Packet Storm