Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226211 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0989 2013-06-7 13:38 2013-05-22 Show GitHub Exploit DB Packet Storm
226212 7.5 危険 アップル
Ruby on Rails project
- Ruby on Rails における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-0333 2013-06-7 12:18 2013-01-28 Show GitHub Exploit DB Packet Storm
226213 10 危険 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0277 2013-06-7 12:09 2013-02-11 Show GitHub Exploit DB Packet Storm
226214 4.3 警告 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord における attr_protected 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0276 2013-06-7 12:07 2013-02-11 Show GitHub Exploit DB Packet Storm
226215 2.6 注意 日本ケンタッキー・フライド・チキン株式会社 - Android 版 ピザハット公式アプリ 宅配ピザのPizzaHut における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-3641 2013-06-7 12:01 2013-06-7 Show GitHub Exploit DB Packet Storm
226216 2.6 注意 マイクロソフト - Internet Explorer における情報漏えいの脆弱性 CWE-Other
その他
- 2013-06-7 12:00 2013-06-7 Show GitHub Exploit DB Packet Storm
226217 6.4 警告 アップル
Ruby on Rails project
- Ruby on Rails におけるデータベースのクエリ制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0155 2013-06-7 11:58 2013-01-8 Show GitHub Exploit DB Packet Storm
226218 7.2 危険 アップル - CUPS における root として任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5519 2013-06-7 11:50 2012-11-20 Show GitHub Exploit DB Packet Storm
226219 7.5 危険 アップル
OpenSSL Project
- OpenSSL の crypto/buffer/buffer.c における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2012-2131 2013-06-7 11:36 2012-04-23 Show GitHub Exploit DB Packet Storm
226220 7.5 危険 アップル
VMware
OpenSSL Project
- OpenSSL の asn1_d2i_read_bio 関数におけるバッファオーバーフロー攻撃を誘発される脆弱性 CWE-119
バッファエラー
CVE-2012-2110 2013-06-7 11:33 2012-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202141 4.3 MEDIUM
Network
arvato skillpipe Arvato Skillpipe 3.0 allows attackers to bypass intended print restrictions by deleting <div id="watermark"> from the HTML source code. CWE-20
 Improper Input Validation 
CVE-2020-9013 2024-11-21 14:39 2020-02-17 Show GitHub Exploit DB Packet Storm
202142 6.1 MEDIUM
Network
gluu gluu_server A cross-site scripting (XSS) vulnerability in the Import People functionality in Gluu Identity Configuration 4.0 allows remote attackers to inject arbitrary web script or HTML via the filename parame… CWE-79
Cross-site Scripting
CVE-2020-9012 2024-11-21 14:39 2020-02-17 Show GitHub Exploit DB Packet Storm
202143 5.4 MEDIUM
Network
codologic codoforum Codoforum 4.8.8 allows self-XSS via the title of a new topic. CWE-79
Cross-site Scripting
CVE-2020-9007 2024-11-21 14:39 2020-02-17 Show GitHub Exploit DB Packet Storm
202144 8.8 HIGH
Adjacent
abbott freestyle_libre_firmware Older generation Abbott FreeStyle Libre sensors allow remote attackers within close proximity to enable write access to memory via a specific NFC unlock command. NOTE: The vulnerability is not presen… CWE-787
 Out-of-bounds Write
CVE-2020-8997 2024-11-21 14:39 2020-02-17 Show GitHub Exploit DB Packet Storm
202145 4.3 MEDIUM
Network
aishu anyshare_cloud AnyShare Cloud 6.0.9 allows authenticated directory traversal to read files, as demonstrated by the interface/downloadwithpath/downloadfile/?filepath=/etc/passwd URI. CWE-22
Path Traversal
CVE-2020-8996 2024-11-21 14:39 2020-02-17 Show GitHub Exploit DB Packet Storm
202146 5.4 MEDIUM
Network
ninjaforms ninja_forms The Ninja Forms plugin 3.4.22 for WordPress has Multiple Stored XSS vulnerabilities via ninja_forms[recaptcha_site_key], ninja_forms[recaptcha_secret_key], ninja_forms[recaptcha_lang], or ninja_forms… CWE-79
Cross-site Scripting
CVE-2020-8594 2024-11-21 14:39 2020-02-15 Show GitHub Exploit DB Packet Storm
202147 7.4 HIGH
Network
istio istio An issue was discovered in Istio 1.3 through 1.3.6. Under certain circumstances, it is possible to bypass a specifically configured Mixer policy. Istio-proxy accepts the x-istio-attributes header at … CWE-20
 Improper Input Validation 
CVE-2020-8843 2024-11-21 14:39 2020-02-15 Show GitHub Exploit DB Packet Storm
202148 9.0 CRITICAL
Network
progess
progress
moveit_transfer In Progress MOVEit Transfer 2019.1 before 2019.1.4 and 2019.2 before 2019.2.1, a REST API endpoint failed to adequately sanitize malicious input, which could allow an authenticated attacker to execut… CWE-79
Cross-site Scripting
CVE-2020-8612 2024-11-21 14:39 2020-02-15 Show GitHub Exploit DB Packet Storm
202149 8.8 HIGH
Network
moxa mgate_5105-mb-eip_firmware
mgate_5105-mb-eip-t_firmware
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Moxa MGate 5105-MB-EIP firmware version 4.1. Authentication is required to exploit this vulnerability… CWE-78
OS Command 
CVE-2020-8858 2024-11-21 14:39 2020-02-15 Show GitHub Exploit DB Packet Storm
202150 7.8 HIGH
Local
foxitsoftware reader
phantompdf
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.7.0.29455. User interaction is required to exploit this vulnerability in that the targ… CWE-416
 Use After Free
CVE-2020-8857 2024-11-21 14:39 2020-02-15 Show GitHub Exploit DB Packet Storm