Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226581 7.2 危険 Beijer Electronics - Beijer ADP および H-Designer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4696 2013-01-29 16:56 2013-01-24 Show GitHub Exploit DB Packet Storm
226582 5 警告 Moxiecode Systems AB
Moodle
- Moodle で使用される TinyMCE 用 PHP Spellchecker における任意のアウトバウンド HTTP リクエストを誘発される脆弱性 CWE-noinfo
情報不足
CVE-2012-6112 2013-01-29 16:55 2013-01-21 Show GitHub Exploit DB Packet Storm
226583 4 警告 Moodle - Moodle におけるコースレベルのカレンダーのサブスクリプションを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6106 2013-01-29 16:55 2013-01-21 Show GitHub Exploit DB Packet Storm
226584 5 警告 Moodle - Moodle の blog/rsslib.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-6105 2013-01-29 16:54 2013-01-21 Show GitHub Exploit DB Packet Storm
226585 5 警告 Moodle - Moodle の blog/rsslib.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-6104 2013-01-29 16:54 2013-01-21 Show GitHub Exploit DB Packet Storm
226586 6.8 警告 Moodle - Moodle の messaging システムにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6103 2013-01-29 16:53 2013-01-21 Show GitHub Exploit DB Packet Storm
226587 6.4 警告 Moodle - Moodle における任意のユーザのサブミッションコメントを読まれるまたは改ざんされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6102 2013-01-29 16:53 2013-01-21 Show GitHub Exploit DB Packet Storm
226588 4.3 警告 Moodle - Moodle におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-6101 2013-01-29 16:52 2013-01-21 Show GitHub Exploit DB Packet Storm
226589 4 警告 Moodle - Moodle の report/outline/index.php における隠し最終アクセス値を見つけられる脆弱性 CWE-200
情報漏えい
CVE-2012-6100 2013-01-29 16:52 2013-01-21 Show GitHub Exploit DB Packet Storm
226590 4 警告 Moodle - Moodle の backup/converter/moodle1/lib.php における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-6099 2013-01-29 16:51 2013-01-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209651 8.8 HIGH
Network
juqingcms juqingcms Cross Site Request Forgery (CSRF) in JuQingCMS v1.0 allows remote attackers to gain local privileges via the component "JuQingCMS_v1.0/admin/index.php?c=administrator&a=add". CWE-352
 Origin Validation Error
CVE-2020-18648 2024-11-21 14:08 2021-06-23 Show GitHub Exploit DB Packet Storm
209652 7.5 HIGH
Network
5none nonecms Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/vendor". CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-18647 2024-11-21 14:08 2021-06-23 Show GitHub Exploit DB Packet Storm
209653 7.5 HIGH
Network
5none nonecms Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/public/index.php". CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-18646 2024-11-21 14:08 2021-06-23 Show GitHub Exploit DB Packet Storm
209654 3.3 LOW
Local
zziplib_project
debian
fedoraproject
zziplib
debian_linux
fedora
Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the return value "zzip_file_read" in the function "unzzip_cat_file". CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-18442 2024-11-21 14:08 2021-06-19 Show GitHub Exploit DB Packet Storm
209655 6.1 MEDIUM
Network
zblogcn z-blogphp Open Redirect in Z-BlogPHP v1.5.2 and earlier allows remote attackers to obtain sensitive information via the "redirect" parameter in the component "zb_system/cmd.php." CWE-601
Open Redirect
CVE-2020-18268 2024-11-21 14:08 2021-06-8 Show GitHub Exploit DB Packet Storm
209656 8.8 HIGH
Network
simple-log_project simple-log Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary code via the component "Simple-Log/admin/admin.php?act=act_add_member". CWE-352
 Origin Validation Error
CVE-2020-18265 2024-11-21 14:08 2021-06-8 Show GitHub Exploit DB Packet Storm
209657 8.8 HIGH
Network
simple-log_project simple-log Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary code via the component "Simple-Log/admin/admin.php?act=act_edit_member". CWE-352
 Origin Validation Error
CVE-2020-18264 2024-11-21 14:08 2021-06-8 Show GitHub Exploit DB Packet Storm
209658 8.8 HIGH
Network
libjpeg-turbo libjpeg-turbo Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial… CWE-787
 Out-of-bounds Write
CVE-2020-17541 2024-11-21 14:08 2021-06-2 Show GitHub Exploit DB Packet Storm
209659 7.5 HIGH
Network
gnu gama A NULL-pointer deference issue was discovered in GNU_gama::set() in ellipsoid.h in Gama 2.04 which can lead to a denial of service (DOS) via segment faults caused by crafted inputs. CWE-476
 NULL Pointer Dereference
CVE-2020-18395 2024-11-21 14:08 2021-05-29 Show GitHub Exploit DB Packet Storm
209660 5.5 MEDIUM
Local
cesanta mjs Stack overflow vulnerability in parse_array Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file. CWE-674
 Uncontrolled Recursion
CVE-2020-18392 2024-11-21 14:08 2021-05-29 Show GitHub Exploit DB Packet Storm