Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226731 5.8 警告 Timo Sirainen - Dovecot における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2011-4318 2013-03-8 19:27 2011-11-17 Show GitHub Exploit DB Packet Storm
226732 4.3 警告 Trimble - Trimble Infrastructure GNSS Series Receiver におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5053 2013-03-8 19:25 2013-03-7 Show GitHub Exploit DB Packet Storm
226733 5 警告 サイボウズ
日本電気
IBM
Apache Software Foundation
富士通
日立
- Apache Tomcat におけるサービス運用妨害 (CPU 資源の消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4858 2013-03-8 15:39 2012-01-5 Show GitHub Exploit DB Packet Storm
226734 5.4 警告 IBM - WebSphere Cast Iron Cloud インテグレーションにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-0465 2013-03-8 14:26 2013-02-12 Show GitHub Exploit DB Packet Storm
226735 6.8 警告 Google - Google Chrome で使用される libxslt におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2893 2013-03-8 14:19 2012-09-25 Show GitHub Exploit DB Packet Storm
226736 5 警告 サイバートラスト株式会社
Google
Mozilla Foundation
レッドハット
- Google Chrome などで利用される xsltGenerateIdFunction 関数における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-1202 2013-03-8 13:50 2011-03-8 Show GitHub Exploit DB Packet Storm
226737 6.8 警告 The GIMP Team - GIMP の GIF 画像形式用プラグインにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-3481 2013-03-8 13:47 2012-08-25 Show GitHub Exploit DB Packet Storm
226738 6.8 警告 The GIMP Team - GIMP の KiSS CEL ファイルフォーマットプラグインにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3403 2013-03-8 13:45 2012-08-25 Show GitHub Exploit DB Packet Storm
226739 4.3 警告 シスコシステムズ - Cisco Security Monitoring, Analysis and Response System における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-1140 2013-03-7 19:17 2013-03-4 Show GitHub Exploit DB Packet Storm
226740 3.5 注意 IBM - IBM TADDM の Data Management Portal Web User Interface におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5942 2013-03-7 19:16 2013-03-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209071 6.1 MEDIUM
Network
tailor_management_system_project tailor_management_system A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Tailor Management System v1.0 allows remote attackers to harvest keys pressed by an unauth… CWE-79
Cross-site Scripting
CVE-2020-23835 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
209072 6.1 MEDIUM
Network
stock_management_system_project stock_management_system A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and sess… CWE-79
Cross-site Scripting
CVE-2020-23831 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
209073 8.8 HIGH
Network
librehealth librehealth_ehr interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suffers from an authenticated file upload vulnerability, allowing remote attackers to achieve remote code execution (RCE) on the host… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-23829 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
209074 7.5 HIGH
Network
gmapfp gmapfp gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the… CWE-276
Incorrect Default Permissions 
CVE-2020-23971 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
209075 7.5 HIGH
Network
liferay liferay_portal The redirect module in Liferay Portal before 7.3.3 does not limit the number of URLs resulting in a 404 error that is recorded, which allows remote attackers to perform a denial of service attack by … CWE-601
Open Redirect
CVE-2020-24554 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
209076 8.8 HIGH
Network
zyxel vmg5313-b30b_firmware Zyxel VMG5313-B30B router on firmware 5.13(ABCJ.6)b3_1127, and possibly older versions of firmware are affected by shell injection. CWE-78
OS Command 
CVE-2020-24354 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
209077 8.8 HIGH
Adjacent
tp-link tl-wa855re_firmware TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtai… CWE-306
Missing Authentication for Critical Function
CVE-2020-24363 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
209078 9.8 CRITICAL
Network
online_book_store_project online_book_store In projectworlds Online Book Store 1.0 Use of Hard-coded Credentials in source code leads to admin panel access. CWE-798
 Use of Hard-coded Credentials
CVE-2020-24115 2024-11-21 14:14 2020-08-31 Show GitHub Exploit DB Packet Storm
209079 6.1 MEDIUM
Network
pix-link lv-wr07_firmware XSS on the PIX-Link Repeater/Router LV-WR07 with firmware v28K.Router.20170904 allows attackers to steal credentials without being connected to the network. The attack vector is a crafted ESSID, as d… CWE-79
Cross-site Scripting
CVE-2020-24104 2024-11-21 14:14 2020-08-31 Show GitHub Exploit DB Packet Storm
209080 6.1 MEDIUM
Network
mara_cms_project mara_cms Mara CMS 7.5 allows cross-site scripting (XSS) in contact.php via the theme or pagetheme parameters. CWE-79
Cross-site Scripting
CVE-2020-24223 2024-11-21 14:14 2020-08-31 Show GitHub Exploit DB Packet Storm