Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227371 4.3 警告 Skype Technologies S.A. - Firefox 用の Skype エクステンションにおける任意のデータをクリップボードに上書きされる脆弱性 CWE-DesignError
CVE-2008-5697 2012-12-20 19:10 2008-12-22 Show GitHub Exploit DB Packet Storm
227372 8.5 危険 WordPress.org - WordPress MU および WordPress の wp-admin/options.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5695 2012-12-20 19:10 2008-12-19 Show GitHub Exploit DB Packet Storm
227373 10 危険 sandbox - Sandbox の lib/jpgraph/jpgraph_errhandler.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-5694 2012-12-20 19:10 2008-12-19 Show GitHub Exploit DB Packet Storm
227374 6.5 警告 phparanoid - PHParanoid における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5673 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227375 6.8 警告 phparanoid - PHParanoid におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5672 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227376 6.8 警告 Textpattern - Textpattern におけるセッションのハイジャック後パスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-5670 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227377 5 警告 Textpattern - Textpattern のコメントプレビューセクションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5669 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227378 4.3 警告 Textpattern - Textpattern におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5668 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227379 5 警告 VirusBlokAda Ltd. - VirusBlokAda VBA32 Personal Antivirus のスキャンエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-5667 2012-12-20 19:10 2008-12-18 Show GitHub Exploit DB Packet Storm
227380 3.5 注意 WING FTP software - WinFTP FTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-5666 2012-12-20 18:52 2008-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209831 7.8 HIGH
Local
pixar
apple
openusd
macos
An out of bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 reconstructs paths from binary USD files. A specially crafted malformed file can trigger an out of bounds memory… CWE-787
 Out-of-bounds Write
CVE-2020-13520 2024-11-21 14:01 2020-12-11 Show GitHub Exploit DB Packet Storm
209832 4.3 MEDIUM
Network
gitlab gitlab An issue was discovered in Gitlab CE/EE versions >= 13.1 to <13.4.7, >= 13.5 to <13.5.5, and >= 13.6 to <13.6.2 allowed an unauthorized user to access the user list corresponding to a feature flag in… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-13357 2024-11-21 14:01 2020-12-11 Show GitHub Exploit DB Packet Storm
209833 8.8 HIGH
Network
processmaker processmaker SQL injection vulnerability exists in the handling of sort parameters in ProcessMaker 3.4.11. A specially crafted HTTP request can cause an SQL injection. The reportTables_Ajax and clientSetupAjax pa… CWE-89
SQL Injection
CVE-2020-13526 2024-11-21 14:01 2020-12-11 Show GitHub Exploit DB Packet Storm
209834 8.8 HIGH
Network
processmaker processmaker The sort parameter in the download page /sysworkflow/en/neoclassic/reportTables/reportTables_Ajax is vulnerable to SQL injection in ProcessMaker 3.4.11. A specially crafted HTTP request can cause an … CWE-89
SQL Injection
CVE-2020-13525 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209835 5.5 MEDIUM
Local
pixar
apple
openusd
mac_os_x
macos
An out-of-bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 uses SPECS data from binary USD files. A specially crafted malformed file can trigger an out-of-bounds memory ac… CWE-787
 Out-of-bounds Write
CVE-2020-13524 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209836 8.8 HIGH
Network
webkitgtk
fedoraproject
webkitgtk
fedora
An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.1 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in a remote code executio… CWE-416
 Use After Free
CVE-2020-13584 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209837 8.8 HIGH
Network
webkitgtk webkitgtk A code execution vulnerability exists in the WebSocket functionality of Webkit WebKitGTK 2.30.0. A specially crafted web page can trigger a use-after-free vulnerability which can lead to remote code … CWE-416
 Use After Free
CVE-2020-13543 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209838 7.8 HIGH
Local
logicaldoc logicaldoc A local privilege elevation vulnerability exists in the file system permissions of LogicalDoc 8.5.1 installation. Depending on the vector chosen, an attacker can either replace the service binary or … CWE-276
Incorrect Default Permissions 
CVE-2020-13542 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209839 8.8 HIGH
Network
pixar openusd A use-after-free vulnerability exists in a way Pixar OpenUSD 20.08 processes reference paths textual USD files. A specially crafted file can trigger the reuse of a freed memory which can result in fu… CWE-416
 Use After Free
CVE-2020-13531 2024-11-21 14:01 2020-12-4 Show GitHub Exploit DB Packet Storm
209840 5.5 MEDIUM
Local
pixar openusd An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigger an arbitrary out of bounds memory access which … - CVE-2020-13498 2024-11-21 14:01 2020-12-3 Show GitHub Exploit DB Packet Storm