Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226311 4.7 警告 Linux - Linux Kernel の Human Interface Device サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2891 2013-09-18 11:23 2013-08-28 Show GitHub Exploit DB Packet Storm
226312 4.7 警告 Linux - Linux Kernel の Human Interface Device サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2890 2013-09-18 11:22 2013-08-28 Show GitHub Exploit DB Packet Storm
226313 6.5 警告 Xen プロジェクト - Xen の xenlight ライブラリにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4329 2013-09-18 10:40 2013-09-12 Show GitHub Exploit DB Packet Storm
226314 7.6 危険 IBM - IBM SPSS Analytical Decision Management における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-5369 2013-09-17 22:21 2013-09-12 Show GitHub Exploit DB Packet Storm
226315 3.5 注意 IBM - IBM SPSS Analytical Decision Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4048 2013-09-17 22:17 2013-09-12 Show GitHub Exploit DB Packet Storm
226316 4.3 警告 IBM - IBM SPSS Analytical Decision Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4047 2013-09-17 22:16 2013-09-12 Show GitHub Exploit DB Packet Storm
226317 6.3 警告 シスコシステムズ - Cisco NX-OS の Open Network Environment Platform におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5496 2013-09-17 21:43 2013-09-13 Show GitHub Exploit DB Packet Storm
226318 4.3 警告 シスコシステムズ - Cisco Unified MeetingPlace の Application Server の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5495 2013-09-17 21:41 2013-09-13 Show GitHub Exploit DB Packet Storm
226319 6.8 警告 シスコシステムズ - Cisco Unified MeetingPlace Solution の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5494 2013-09-17 21:40 2013-09-13 Show GitHub Exploit DB Packet Storm
226320 6.8 警告 シスコシステムズ - Cisco Virtualization Experience Client のファームウェアにおけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-5493 2013-09-17 21:39 2013-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209031 7.2 HIGH
Network
pixelite events_manager The Events Manager WordPress plugin before 5.9.8 does not sanitise and escape a parameter before using it in a SQL statement, leading to an SQL Injection - CVE-2020-35012 2024-11-21 14:26 2021-12-2 Show GitHub Exploit DB Packet Storm
209032 9.8 CRITICAL
Network
windriver
oracle
vxworks
communications_eagle
An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory … CWE-190
 Integer Overflow or Wraparound
CVE-2020-35198 2024-11-21 14:26 2021-05-12 Show GitHub Exploit DB Packet Storm
209033 9.8 CRITICAL
Network
mobileiron mobile\@work The MobileIron agents through 2021-03-22 for Android and iOS contain a hardcoded encryption key, used to encrypt the submission of username/password details during the authentication process, as demo… CWE-798
 Use of Hard-coded Credentials
CVE-2020-35138 2024-11-21 14:26 2021-03-30 Show GitHub Exploit DB Packet Storm
209034 7.5 HIGH
Network
mobileiron mobile\@work The MobileIron agents through 2021-03-22 for Android and iOS contain a hardcoded API key, used to communicate with the MobileIron SaaS discovery API, as demonstrated by Mobile@Work (aka com.mobileiro… CWE-798
 Use of Hard-coded Credentials
CVE-2020-35137 2024-11-21 14:26 2021-03-30 Show GitHub Exploit DB Packet Storm
209035 9.6 CRITICAL
Network
acquia mautic A cross-site scripting (XSS) vulnerability in the forms component of Mautic before 3.2.4 allows remote attackers to inject executable JavaScript via mautic[return] (a different attack method than CVE… CWE-79
Cross-site Scripting
CVE-2020-35125 2024-11-21 14:26 2021-02-10 Show GitHub Exploit DB Packet Storm
209036 7.8 HIGH
Local
cloudflare warp Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process running with non-administrative privileges can become an administrator by abusing … CWE-428
 Unquoted Search Path or Element
CVE-2020-35152 2024-11-21 14:26 2021-02-3 Show GitHub Exploit DB Packet Storm
209037 7.8 HIGH
Local
acronis true_image Acronis True Image for Windows prior to 2021 Update 3 allowed local privilege escalation due to a DLL hijacking vulnerability in multiple components, aka an Untrusted Search Path issue. CWE-427
 Uncontrolled Search Path Element
CVE-2020-35145 2024-11-21 14:26 2021-01-29 Show GitHub Exploit DB Packet Storm
209038 9.6 CRITICAL
Network
acquia mautic A cross-site scripting (XSS) vulnerability in the assets component of Mautic before 3.2.4 allows remote attackers to inject executable JavaScript through the Referer header of asset downloads. CWE-79
Cross-site Scripting
CVE-2020-35124 2024-11-21 14:26 2021-01-28 Show GitHub Exploit DB Packet Storm
209039 9.0 CRITICAL
Network
acquia mautic Mautic before 3.2.4 is affected by stored XSS. An attacker with permission to manage companies, an application feature, could attack other users, including administrators. For example, by loading an … CWE-79
Cross-site Scripting
CVE-2020-35128 2024-11-21 14:26 2021-01-19 Show GitHub Exploit DB Packet Storm
209040 9.0 CRITICAL
Network
mautic mautic Mautic before 3.2.4 is affected by stored XSS. An attacker with access to Social Monitoring, an application feature, could attack other users, including administrators. For example, an attacker could… CWE-79
Cross-site Scripting
CVE-2020-35129 2024-11-21 14:26 2021-01-19 Show GitHub Exploit DB Packet Storm