Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227411 5 警告 General Electric Company - GE Intelligent Platforms Proficy Real-Time Information Portal における設定ファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0651 2013-01-29 16:48 2013-01-22 Show GitHub Exploit DB Packet Storm
227412 6.8 警告 レッドハット - FreeIPA のクライアントにおけるドメイン参加の処理を偽装される脆弱性 CWE-310
暗号の問題
CVE-2012-5484 2013-01-29 16:48 2013-01-23 Show GitHub Exploit DB Packet Storm
227413 5 警告 トリップアドバイザー - TripAdvisor for iOS における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-4917 2013-01-29 16:47 2013-01-26 Show GitHub Exploit DB Packet Storm
227414 9.3 危険 CoolPDF Software - CoolPDF の Reader におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4914 2013-01-29 16:47 2013-01-26 Show GitHub Exploit DB Packet Storm
227415 10 危険 ヒューレット・パッカード - HP Diagnostics Server におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3278 2013-01-29 16:43 2013-01-22 Show GitHub Exploit DB Packet Storm
227416 5.8 警告 Novell - WebYaST にホスト一覧を改ざんされる脆弱性 CWE-noinfo
情報不足
CVE-2012-0435 2013-01-29 14:10 2013-01-28 Show GitHub Exploit DB Packet Storm
227417 10 危険 IBM - IBM WebSphere Application Server における脆弱性 CWE-noinfo
情報不足
CVE-2013-0462 2013-01-29 11:49 2013-01-23 Show GitHub Exploit DB Packet Storm
227418 4.3 警告 IBM - IBM WebSphere Application Server の Virtual Member Manager 管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0461 2013-01-29 11:49 2013-01-23 Show GitHub Exploit DB Packet Storm
227419 6.8 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0460 2013-01-29 11:48 2013-01-23 Show GitHub Exploit DB Packet Storm
227420 4.3 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0459 2013-01-29 11:47 2013-01-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208341 4.4 MEDIUM
Local
linux infiniband_hfi1_driver A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash… - CVE-2020-27835 2024-11-21 14:21 2021-01-8 Show GitHub Exploit DB Packet Storm
208342 5.5 MEDIUM
Local
uclouvain
fedoraproject
debian
oracle
openjpeg
fedora
debian_linux
outside_in_technology
There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is able to provide untrusted input to openjpeg's conversion/encoding functionality, they could cause an o… - CVE-2020-27845 2024-11-21 14:21 2021-01-6 Show GitHub Exploit DB Packet Storm
208343 7.8 HIGH
Local
uclouvain
debian
oracle
openjpeg
debian_linux
outside_in_technology
A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg during conversion and encoding, causing an out-of-bou… - CVE-2020-27844 2024-11-21 14:21 2021-01-6 Show GitHub Exploit DB Packet Storm
208344 5.5 MEDIUM
Local
uclouvain
fedoraproject
oracle
debian
openjpeg
fedora
outside_in_technology
debian_linux
A flaw was found in OpenJPEG in versions prior to 2.4.0. This flaw allows an attacker to provide specially crafted input to the conversion or encoding functionality, causing an out-of-bounds read. Th… CWE-125
Out-of-bounds Read
CVE-2020-27843 2024-11-21 14:21 2021-01-6 Show GitHub Exploit DB Packet Storm
208345 5.5 MEDIUM
Local
uclouvain
fedoraproject
debian
redhat
oracle
openjpeg
fedora
extra_packages_for_enterprise_linux
debian_linux
enterprise_linux
enterprise_linux_for_power_little_endian
enterprise_linux_for_ibm_z_systems
codeready_linux_buil…
There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest im… - CVE-2020-27842 2024-11-21 14:21 2021-01-6 Show GitHub Exploit DB Packet Storm
208346 5.5 MEDIUM
Local
uclouvain
fedoraproject
debian
oracle
openjpeg
fedora
debian_linux
outside_in_technology
There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by the openjpeg encoder, this could cause an out-of-bo… - CVE-2020-27841 2024-11-21 14:21 2021-01-6 Show GitHub Exploit DB Packet Storm
208347 5.3 MEDIUM
Network
docker docker util/binfmt_misc/check.go in Builder in Docker Engine before 19.03.9 calls os.OpenFile with a potentially unsafe qemu-check temporary pathname, constructed with an empty first argument in an ioutil.T… CWE-22
Path Traversal
CVE-2020-27534 2024-11-21 14:21 2020-12-31 Show GitHub Exploit DB Packet Storm
208348 8.8 HIGH
Network
dotcms dotcms dotCMS before 20.10.1 allows SQL injection, as demonstrated by the /api/v1/containers orderby parameter. The PaginatorOrdered classes that are used to paginate results of a REST endpoints do not sani… CWE-89
SQL Injection
CVE-2020-27848 2024-11-21 14:21 2020-12-31 Show GitHub Exploit DB Packet Storm
208349 8.8 HIGH
Network
1e client The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.Metrics.exe. This may allow remote authenticated users and … CWE-428
 Unquoted Search Path or Element
CVE-2020-27645 2024-11-21 14:21 2020-12-30 Show GitHub Exploit DB Packet Storm
208350 8.8 HIGH
Network
1e client The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.Metrics.exe. This may allow remote authenticated users and … CWE-428
 Unquoted Search Path or Element
CVE-2020-27644 2024-11-21 14:21 2020-12-30 Show GitHub Exploit DB Packet Storm