Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227051 4.3 警告 Nathan Haug - Drupal 用 Webform モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2129 2013-06-26 14:03 2013-05-29 Show GitHub Exploit DB Packet Storm
227052 4.3 警告 Yoran Brault - Drupal 用 Filebrowser モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2036 2013-06-26 14:00 2013-04-30 Show GitHub Exploit DB Packet Storm
227053 4.3 警告 Alexey Sukhotin - Drupal 用 elFinder file manager モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1972 2013-06-26 14:00 2013-04-16 Show GitHub Exploit DB Packet Storm
227054 4.3 警告 drunomics - Drupal 用 Rules モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1906 2013-06-26 13:57 2013-03-27 Show GitHub Exploit DB Packet Storm
227055 4.3 警告 Opera Software ASA - Opera におけるアドレスバー詐称の脆弱性 CWE-Other
その他
CVE-2012-4010 2013-06-26 13:47 2012-08-30 Show GitHub Exploit DB Packet Storm
227056 7.5 危険 D-Link Systems, Inc. - D-Link DIR-685 Xtreme N Storage Router の暗号化通信に脆弱性 CWE-310
暗号の問題
CVE-2011-4507 2013-06-26 13:44 2011-10-11 Show GitHub Exploit DB Packet Storm
227057 2.6 注意 サイボウズ - サイボウズLive for Android における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2013-3647 2013-06-26 13:41 2013-06-18 Show GitHub Exploit DB Packet Storm
227058 3.3 注意 ASUSTeK Computer Inc. - RT-N56U における管理パスワード漏えいの脆弱性 CWE-200
情報漏えい
CVE-2011-4497 2013-06-26 13:41 2011-08-26 Show GitHub Exploit DB Packet Storm
227059 5.8 警告 サイボウズ - サイボウズLive for Android において任意の Java のメソッドが実行される脆弱性 CWE-DesignError
CVE-2013-3646 2013-06-26 13:39 2013-06-18 Show GitHub Exploit DB Packet Storm
227060 10 危険 NJStar Software Company - NJStar Communicator にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-4040 2013-06-26 13:38 2011-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208401 5.4 MEDIUM
Network
enviragallery envira_gallery A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_ti… CWE-79
Cross-site Scripting
CVE-2020-35582 2024-11-21 14:27 2021-01-15 Show GitHub Exploit DB Packet Storm
208402 5.4 MEDIUM
Network
enviragallery envira_gallery A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/admin-ajax.php request with the m… CWE-79
Cross-site Scripting
CVE-2020-35581 2024-11-21 14:27 2021-01-15 Show GitHub Exploit DB Packet Storm
208403 8.8 HIGH
Network
eclipse vert.x-web Vert.x-Web framework v4.0 milestone 1-4 does not perform a correct CSRF verification. Instead of comparing the CSRF token in the request with the CSRF token in the cookie, it compares the CSRF token … CWE-352
 Origin Validation Error
CVE-2020-35217 2024-11-21 14:27 2021-01-20 Show GitHub Exploit DB Packet Storm
208404 7.2 HIGH
Network
nagios nagios_xi An issue was discovered in the Manage Plugins page in Nagios XI before 5.8.0. Because the line-ending conversion feature is mishandled during a plugin upload, a remote, authenticated admin user can e… CWE-78
OS Command 
CVE-2020-35578 2024-11-21 14:27 2021-01-14 Show GitHub Exploit DB Packet Storm
208405 4.3 MEDIUM
Network
php-fusion phpfusion PHPFusion version 9.03.90 is vulnerable to CSRF attack which leads to deletion of all shoutbox messages by the attacker on behalf of the logged in victim. CWE-352
 Origin Validation Error
CVE-2020-35687 2024-11-21 14:27 2021-01-14 Show GitHub Exploit DB Packet Storm
208406 7.8 HIGH
Local
soundresearch dchu_model_software_component_modules The SECOMN service in Sound Research DCHU model software component modules (APO) through 2.0.9.17, delivered on HP Windows 10 computers, may allow escalation of privilege via a fake DLL. (As a resolu… CWE-426
 Untrusted Search Path
CVE-2020-35686 2024-11-21 14:27 2021-01-13 Show GitHub Exploit DB Packet Storm
208407 7.8 HIGH
Local
clusterlabs
debian
crmsh
debian_linux
An issue was discovered in ClusterLabs crmsh through 4.2.1. Local attackers able to call "crm history" (when "crm" is run) were able to execute commands via shell code injection to the crm history co… CWE-78
OS Command 
CVE-2020-35459 2024-11-21 14:27 2021-01-13 Show GitHub Exploit DB Packet Storm
208408 9.8 CRITICAL
Network
clusterlabs hawk An issue was discovered in ClusterLabs Hawk 2.x through 2.3.0-x. There is a Ruby shell code injection issue via the hawk_remember_me_id parameter in the login_from_cookie cookie. The user logout rout… CWE-78
OS Command 
CVE-2020-35458 2024-11-21 14:27 2021-01-13 Show GitHub Exploit DB Packet Storm
208409 5.4 MEDIUM
Network
python
fedoraproject
pillow
fedora
In Pillow before 8.1.0, SGIRleDecode has a 4-byte buffer over-read when decoding crafted SGI RLE image files because offsets and length tables are mishandled. CWE-125
Out-of-bounds Read
CVE-2020-35655 2024-11-21 14:27 2021-01-12 Show GitHub Exploit DB Packet Storm
208410 8.8 HIGH
Network
python
fedoraproject
pillow
fedora
In Pillow before 8.1.0, TiffDecode has a heap-based buffer overflow when decoding crafted YCbCr files because of certain interpretation conflicts with LibTIFF in RGBA mode. CWE-787
 Out-of-bounds Write
CVE-2020-35654 2024-11-21 14:27 2021-01-12 Show GitHub Exploit DB Packet Storm