Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226581 5.8 警告 WordPress.org - WordPress 用 Age Verification プラグインにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-6499 2013-01-16 16:32 2013-01-12 Show GitHub Exploit DB Packet Storm
226582 7.5 危険 Elite Bulletin Board - Elite Bulletin Board における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5874 2013-01-16 16:31 2012-12-6 Show GitHub Exploit DB Packet Storm
226583 4.4 警告 Ettercap Project - Ettercap の ec_scan.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0722 2013-01-16 15:32 2013-01-11 Show GitHub Exploit DB Packet Storm
226584 10 危険 Connections project - WordPress 用の Connections プラグインにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-5254 2013-01-16 15:25 2011-06-15 Show GitHub Exploit DB Packet Storm
226585 4.3 警告 thregr.org - Dl Download Ticket Service における任意のユーザでログインされる脆弱性 CWE-287
不適切な認証
CVE-2011-5253 2013-01-16 15:16 2011-12-31 Show GitHub Exploit DB Packet Storm
226586 9.3 危険 マイクロソフト - Microsoft .NET Framework の Windows Forms コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0002 2013-01-16 15:01 2013-01-8 Show GitHub Exploit DB Packet Storm
226587 9.3 危険 マイクロソフト - Microsoft .NET Framework の S.DS.P 名前空間メソッドにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0003 2013-01-16 15:01 2013-01-8 Show GitHub Exploit DB Packet Storm
226588 7.8 危険 マイクロソフト - Microsoft .NET Framework および Windows Server 2012 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0005 2013-01-16 14:59 2013-01-8 Show GitHub Exploit DB Packet Storm
226589 3.5 注意 OpenStack - OpenStack Keystone における承認の制限を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-5571 2013-01-16 14:44 2012-11-28 Show GitHub Exploit DB Packet Storm
226590 5.8 警告 Orchard Project - Orchard の Users/Account/LogOff におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2011-5252 2013-01-16 14:31 2011-12-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201541 5.4 MEDIUM
Network
ibm api_connect IBM API Connect V2018.4.1.0 through 2018.4.1.10 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker coul… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-4195 2024-11-21 14:32 2020-05-12 Show GitHub Exploit DB Packet Storm
201542 4.3 MEDIUM
Network
ibm data_risk_manager IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to downl… CWE-22
Path Traversal
CVE-2020-4430 2024-11-21 14:32 2020-05-8 Show GitHub Exploit DB Packet Storm
201543 9.8 CRITICAL
Network
ibm data_risk_manager IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password for an IDRM administrative account. A remote attacker could exploit this vulnerability to login and exec… CWE-798
 Use of Hard-coded Credentials
CVE-2020-4429 2024-11-21 14:32 2020-05-8 Show GitHub Exploit DB Packet Storm
201544 9.1 CRITICAL
Network
ibm data_risk_manager IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533. CWE-78
OS Command 
CVE-2020-4428 2024-11-21 14:32 2020-05-8 Show GitHub Exploit DB Packet Storm
201545 9.8 CRITICAL
Network
ibm data_risk_manager IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote attacker to bypass security restrictions when configured with SAML authentication. By sending a specially craft… NVD-CWE-noinfo
CVE-2020-4427 2024-11-21 14:32 2020-05-8 Show GitHub Exploit DB Packet Storm
201546 4.3 MEDIUM
Network
ibm business_process_manager
business_automation_workflow
IBM Business Process Manager 8.0, 8.5, and 8.6 and IBM Business Automation Workflow 18.0 and 19.0 could allow a remote attacker to bypass security restrictions, caused by the failure to perform insuf… CWE-863
 Incorrect Authorization
CVE-2020-4446 2024-11-21 14:32 2020-05-6 Show GitHub Exploit DB Packet Storm
201547 5.4 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Liberty 19.0.0.5 through 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IBM X-Force ID: 180084. CWE-290
 Authentication Bypass by Spoofing
CVE-2020-4421 2024-11-21 14:32 2020-05-6 Show GitHub Exploit DB Packet Storm
201548 5.4 MEDIUM
Network
ibm infosphere_information_server_on_cloud
infosphere_qualitystage
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intend… CWE-79
Cross-site Scripting
CVE-2020-4384 2024-11-21 14:32 2020-05-6 Show GitHub Exploit DB Packet Storm
201549 5.3 MEDIUM
Network
hcltech hcl_nomad "If port encryption is not enabled on the Domino Server, HCL Nomad on Android and iOS Platforms will communicate in clear text and does not currently have a user interface option to change the settin… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-4092 2024-11-21 14:32 2020-05-6 Show GitHub Exploit DB Packet Storm
201550 5.4 MEDIUM
Network
ibm spectrum_protect_plus IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequen… CWE-22
Path Traversal
CVE-2020-4209 2024-11-21 14:32 2020-05-4 Show GitHub Exploit DB Packet Storm