Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226411 7.8 危険 シスコシステムズ - Cisco IOS の Protocol Translation (PT) 機能におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-119
バッファエラー
CVE-2013-1147 2013-04-1 20:46 2013-03-27 Show GitHub Exploit DB Packet Storm
226412 7.8 危険 シスコシステムズ - Cisco IOS の Smart Install クライアント機能におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-119
バッファエラー
CVE-2013-1146 2013-04-1 20:46 2013-03-27 Show GitHub Exploit DB Packet Storm
226413 7.1 危険 シスコシステムズ - Cisco IOS および IOS XE の RSVP プロトコルの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1143 2013-04-1 20:19 2013-03-27 Show GitHub Exploit DB Packet Storm
226414 8.2 危険 マカフィー - McAfee Virtual Technician および ePO-MVT における任意のファイルを変更または作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5879 2013-04-1 16:42 2013-03-15 Show GitHub Exploit DB Packet Storm
226415 7.5 危険 MySQL AB
オラクル
- MySQL で使用される yaSSL におけるバッファオーバーフローの脆弱性性 CWE-119
バッファエラー
CVE-2012-0553 2013-04-1 16:02 2012-09-28 Show GitHub Exploit DB Packet Storm
226416 4.9 警告 ISC, Inc. - ISC DHCP におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-119
バッファエラー
CVE-2013-2494 2013-04-1 15:47 2013-03-26 Show GitHub Exploit DB Packet Storm
226417 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC Smarts Network Configuration Manager の System Management Console における脆弱性 CWE-noinfo
情報不足
CVE-2013-2717 2013-04-1 15:40 2013-03-28 Show GitHub Exploit DB Packet Storm
226418 4.3 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0936 2013-04-1 15:36 2013-03-28 Show GitHub Exploit DB Packet Storm
226419 2.1 注意 Views Project - Drupal 用 Views モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1878 2013-04-1 15:00 2013-03-20 Show GitHub Exploit DB Packet Storm
226420 2.1 注意 Thomas Seidl - Drupal 用 Search API モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2715 2013-04-1 14:58 2013-01-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209281 4.9 MEDIUM
Network
sonatype nexus In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user. CWE-522
 Insufficiently Protected Credentials
CVE-2020-24622 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209282 6.1 MEDIUM
Network
techkshetrainfo savsoft_quiz TechKshetra Info Solutions Pvt. Ltd Savsoft Quiz 5.5 and earlier has XSS which can result in an attacker injecting the XSS payload in the User Registration section and each time the admin visits the … CWE-79
Cross-site Scripting
CVE-2020-24609 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209283 8.8 HIGH
Network
fossil-scm
fedoraproject
opensuse
fossil
fedora
leap
backports_sle
Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.12.1 allows remote authenticated users to execute arbitrary code. An attacker must have check-in privileges on the repository. CWE-862
 Missing Authorization
CVE-2020-24614 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209284 8.1 HIGH
Network
fasterxml
netapp
oracle
debian
jackson-databind
active_iq_unified_manager
application_testing_suite
agile_plm
communications_policy_management
communications_diameter_signaling_router
communications_services_gate…
FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource (aka Anteros-DBCP). CWE-502
 Deserialization of Untrusted Data
CVE-2020-24616 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209285 6.8 MEDIUM
Network
wolfssl wolfssl wolfSSL before 4.5.0 mishandles TLS 1.3 server data in the WAIT_CERT_CR state, within SanityCheckTls13MsgReceived() in tls13.c. This is an incorrect implementation of the TLS 1.3 client state machine… CWE-295
Improper Certificate Validation 
CVE-2020-24613 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209286 8.8 HIGH
Network
raspap raspap An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS (… CWE-78
OS Command 
CVE-2020-24572 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209287 4.7 MEDIUM
Local
fedoraproject selinux-policy An issue was discovered in the selinux-policy (aka Reference Policy) package 3.14 through 2020-08-24 because the .config/Yubico directory is mishandled. Consequently, when SELinux is in enforced mode… CWE-287
Improper Authentication
CVE-2020-24612 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209288 7.5 HIGH
Network
squid-cache
canonical
debian
fedoraproject
opensuse
squid
ubuntu_linux
debian_linux
fedora
leap
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only o… CWE-667
 Improper Locking
CVE-2020-24606 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209289 6.5 MEDIUM
Network
wso2 identity_server_analytics
api_microgateway
api_manager
enterprise_integrator
api_manager_analytics
The Management Console in certain WSO2 products allows XXE attacks during EventReceiver updates. This affects API Manager through 3.0.0, API Manager Analytics 2.2.0 and 2.5.0, API Microgateway 2.2.0,… CWE-611
XXE
CVE-2020-24591 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209290 9.1 CRITICAL
Network
wso2 api_microgateway
api_manager
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks. CWE-776
XML Entity Expansion
CVE-2020-24590 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm