Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228301 4.3 警告 Antti Alamaki - Drupal 用 PRH Search モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6576 2013-07-1 14:38 2012-09-8 Show GitHub Exploit DB Packet Storm
228302 4.3 警告 Shushu Inbar - Drupal 用 Exposed Filter Data モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6575 2013-07-1 14:37 2012-09-5 Show GitHub Exploit DB Packet Storm
228303 4.3 警告 Antti Alamaki - Drupal 用 Fonecta verify モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6574 2013-07-1 14:37 2012-09-8 Show GitHub Exploit DB Packet Storm
228304 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の nsContentUtils::RemoveScriptBlocker 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1681 2013-06-28 15:11 2013-05-14 Show GitHub Exploit DB Packet Storm
228305 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の nsFrameList::FirstChild 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-1680 2013-06-28 15:08 2013-05-14 Show GitHub Exploit DB Packet Storm
228306 5 警告 Apache Software Foundation - Subversion の mod_dav_svn Apache HTTPD サーバモジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-1847 2013-06-28 15:07 2013-03-29 Show GitHub Exploit DB Packet Storm
228307 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の mozilla::plugins::child::_geturlnotify 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1679 2013-06-28 15:07 2013-05-14 Show GitHub Exploit DB Packet Storm
228308 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の _cairo_xlib_surface_add_glyph 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-1678 2013-06-28 15:05 2013-05-14 Show GitHub Exploit DB Packet Storm
228309 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の gfxSkipCharsIterator::SetOffsets 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1677 2013-06-28 15:03 2013-05-14 Show GitHub Exploit DB Packet Storm
228310 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の SelectionIterator::GetNextSegment 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-1676 2013-06-28 15:01 2013-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
217221 6.1 MEDIUM
Network
bestsoftinc car_rental_system An issue was discovered in the bestsoftinc Car Rental System plugin through 1.3 for WordPress. Persistent XSS can occur via any of the registration fields. CWE-79
Cross-site Scripting
CVE-2020-15535 2024-11-21 14:05 2020-07-6 Show GitHub Exploit DB Packet Storm
217222 7.5 HIGH
Network
wireshark
opensuse
debian
wireshark
leap
debian_linux
In Wireshark 3.2.0 to 3.2.4, the GVCP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-gvcp.c by ensuring that an offset increases in all situations. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-15466 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
217223 7.8 HIGH
Local
valvesoftware steam_client An issue was discovered in Valve Steam Client 2.10.91.91. The installer allows local users to gain NT AUTHORITY\SYSTEM privileges because some parts of %PROGRAMFILES(X86)%\Steam and/or %COMMONPROGRAM… CWE-362
Race Condition
CVE-2020-15530 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
217224 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user installs a game or performs a verify/repair operation. The issue exists because of weak fil… CWE-667
CWE-732
 Improper Locking
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15529 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
217225 7.8 HIGH
Local
gog galaxy An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user starts or uninstalls a game because of weak file permissions and missing file integrity che… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-15528 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
217226 7.8 HIGH
Local
python
netapp
python
snapcenter
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native appl… CWE-427
CWE-908
 Uncontrolled Search Path Element
 Use of Uninitialized Resource
CVE-2020-15523 2024-11-21 14:05 2020-07-5 Show GitHub Exploit DB Packet Storm
217227 8.8 HIGH
Network
veeam veeam_availability_suite
veeam_backup_\&_replication
VeeamFSR.sys in Veeam Availability Suite before 10 and Veeam Backup & Replication before 10 has no device object DACL, which allows unprivileged users to achieve total control over filesystem I/O req… CWE-862
 Missing Authorization
CVE-2020-15518 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
217228 2.3 LOW
Local
qemu
debian
qemu
debian_linux
In QEMU 4.2.0, a MemoryRegionOps object may lack read/write callback methods, leading to a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2020-15469 2024-11-21 14:05 2020-07-3 Show GitHub Exploit DB Packet Storm
217229 7.5 HIGH
Network
libraw
fedoraproject
debian
libraw
fedora
debian_linux
LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed… CWE-20
 Improper Input Validation 
CVE-2020-15503 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm
217230 7.5 HIGH
Network
duckduckgo duckduckgo The DuckDuckGo application through 5.58.0 for Android, and through 7.47.1.0 for iOS, sends hostnames of visited web sites within HTTPS .ico requests to servers in the duckduckgo.com domain, which mig… CWE-200
Information Exposure
CVE-2020-15502 2024-11-21 14:05 2020-07-2 Show GitHub Exploit DB Packet Storm