Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226541 7.6 危険 Foxit Software Inc - Foxit Advanced PDF Editor にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0107 2013-02-5 17:34 2013-01-28 Show GitHub Exploit DB Packet Storm
226542 6.8 警告 サン・マイクロシステムズ
日本電気
オラクル
- Oracle Java 7 に脆弱性 CWE-noinfo
情報不足
CVE-2012-4681 2013-02-4 17:51 2012-08-28 Show GitHub Exploit DB Packet Storm
226543 7.8 危険 MiniUPnP Project - MiniUPnP MiniUPnPd の HTTP サービスにおける整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2013-1462 2013-02-4 16:38 2013-01-31 Show GitHub Exploit DB Packet Storm
226544 7.8 危険 MiniUPnP Project - MiniUPnP MiniUPnPd の HTTP サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-1461 2013-02-4 16:37 2013-01-31 Show GitHub Exploit DB Packet Storm
226545 10 危険 MiniUPnP Project - MiniUPnP MiniUPnPd の HTTP サービスにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0230 2013-02-4 16:37 2013-01-31 Show GitHub Exploit DB Packet Storm
226546 7.8 危険 MiniUPnP Project - MiniUPnP MiniUPnPd の SSDP ハンドラにおけるサービス運用妨害 (サービスクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0229 2013-02-4 16:36 2013-01-31 Show GitHub Exploit DB Packet Storm
226547 7.6 危険 DELL EMC (旧 EMC Corporation) - EMC AlphaStor の Drive Control Program におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0930 2013-02-4 16:26 2013-01-31 Show GitHub Exploit DB Packet Storm
226548 9.3 危険 オラクル - Oracle Java SE 7 Update 11 における Java セキュリティサンドボックスを回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-1490 2013-02-4 16:25 2013-01-31 Show GitHub Exploit DB Packet Storm
226549 4.3 警告 シスコシステムズ - Cisco Unified Communications Domain Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1113 2013-02-1 16:13 2013-01-25 Show GitHub Exploit DB Packet Storm
226550 5 警告 シスコシステムズ - Cisco Carrier Routing System におけるサービス運用妨害 (パケットロス) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1112 2013-02-1 16:13 2013-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214151 9.1 CRITICAL
Network
thinx-device-api_project thinx-device-api A vulnerability has been disclosed in thinx-device-api IoT Device Management Server before version 2.5.0. Device MAC address can be spoofed. This means initial registration requests without UDID and … - CVE-2020-11015 2024-11-21 13:56 2020-05-1 Show GitHub Exploit DB Packet Storm
214152 8.2 HIGH
Network
moonlight-stream moonlight In Moonlight iOS/tvOS before 4.0.1, the pairing process is vulnerable to a man-in-the-middle attack. The bug has been fixed in Moonlight v4.0.1 for iOS and tvOS. CWE-200
Information Exposure
CVE-2020-11024 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214153 9.8 CRITICAL
Network
faye_project faye Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass c… CWE-287
Improper Authentication
CVE-2020-11020 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214154 6.1 MEDIUM
Network
jquery
debian
fedoraproject
drupal
oracle
netapp
tenable
jquery
debian_linux
fedora
drupal
weblogic_server
hyperion_financial_reporting
webcenter_sites
application_testing_suite
communications_operations_monitor
communications_in…
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation m… - CVE-2020-11023 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214155 7.5 HIGH
Network
http-client_project http-client Actions Http-Client (NPM @actions/http-client) before version 1.0.8 can disclose Authorization headers to incorrect domain in certain redirect scenarios. The conditions in which this happens are if c… NVD-CWE-noinfo
CVE-2020-11021 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214156 6.5 MEDIUM
Network
pagerduty rundeck In Rundeck before version 3.2.6, authenticated users can craft a request that reveals Execution data and logs and Job details that they are not authorized to see. Depending on the configuration and t… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-11009 2024-11-21 13:56 2020-04-30 Show GitHub Exploit DB Packet Storm
214157 6.1 MEDIUM
Network
netgate pfsense An XSS vulnerability resides in the hostname field of the diag_ping.php page in pfsense before 2.4.5 version. After passing inputs to the command and executing this command, the $result variable is n… CWE-79
Cross-site Scripting
CVE-2020-10797 2024-11-21 13:56 2020-04-29 Show GitHub Exploit DB Packet Storm
214158 8.6 HIGH
Network
simpleledger electron-cash-slp Electron-Cash-SLP before version 3.6.2 has a vulnerability. All token creators that use the "Mint Tool" feature of the Electron Cash SLP Edition are at risk of sending the minting authority baton to … NVD-CWE-noinfo
CVE-2020-11014 2024-11-21 13:56 2020-04-29 Show GitHub Exploit DB Packet Storm
214159 5.4 MEDIUM
Network
hashicorp nomad HashiCorp Nomad and Nomad Enterprise up to 0.10.4 contained a cross-site scripting vulnerability such that files from a malicious workload could cause arbitrary JavaScript to execute in the web UI. F… CWE-79
Cross-site Scripting
CVE-2020-10944 2024-11-21 13:56 2020-04-28 Show GitHub Exploit DB Packet Storm
214160 6.5 MEDIUM
Network
percona xtrabackup Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is p… CWE-200
Information Exposure
CVE-2020-10997 2024-11-21 13:56 2020-04-27 Show GitHub Exploit DB Packet Storm