Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228351 6.8 警告 NetWebLogic - WordPress 用 Login With Ajax プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2707 2013-05-13 17:31 2013-05-6 Show GitHub Exploit DB Packet Storm
228352 5 警告 シスコシステムズ - Cisco Unified Presence のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1242 2013-05-13 17:30 2013-05-7 Show GitHub Exploit DB Packet Storm
228353 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC AlphaStor の Library Control Program におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0946 2013-05-13 16:14 2013-05-9 Show GitHub Exploit DB Packet Storm
228354 5.8 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0939 2013-05-13 16:12 2013-05-9 Show GitHub Exploit DB Packet Storm
228355 4.3 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0938 2013-05-13 15:54 2013-05-9 Show GitHub Exploit DB Packet Storm
228356 5.8 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-0937 2013-05-13 15:53 2013-05-9 Show GitHub Exploit DB Packet Storm
228357 6.8 警告 IBM - Windows および Linux 上で稼働する IBM Notes における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-2977 2013-05-13 15:50 2013-05-6 Show GitHub Exploit DB Packet Storm
228358 3.5 注意 IBM - IBM Sterling Multi-Channel Fulfillment Solution および Sterling Selling and Fulfillment Foundation における重要なデータベース情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-0578 2013-05-13 15:49 2013-05-2 Show GitHub Exploit DB Packet Storm
228359 4 警告 IBM - IBM Sterling Secure Proxy における重要な Java スタックトレース情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0520 2013-05-13 15:46 2013-05-3 Show GitHub Exploit DB Packet Storm
228360 5 警告 IBM - IBM Sterling Secure Proxy における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0519 2013-05-13 15:43 2013-05-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
206951 5.9 MEDIUM
Network
fujixerox apeosware_management_suite The AWMS Mobile App for Android 2.0.0 to 2.0.5 and for iOS 2.0.0 to 2.0.8 does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti… CWE-295
Improper Certificate Validation 
CVE-2020-5526 2024-11-21 14:34 2020-01-31 Show GitHub Exploit DB Packet Storm
206952 7.4 HIGH
Network
nttdata
ashikagabank
sihd-bk
shikokubank
tohoku-bank
naganobank
77bank
hokkaidobank
hokugin
mypallete
ashigin
ikeda_senshu_bank
shikoku_bank
tougin
nagagin
77_bank
dogin
hokuriku_bank_portal
Android App 'MyPallete' and some of the Android banking applications based on 'MyPallete' do not verify X.509 certificates from servers, and also do not properly validate certificates with host-misma… CWE-295
Improper Certificate Validation 
CVE-2020-5523 2024-11-21 14:34 2020-01-28 Show GitHub Exploit DB Packet Storm
206953 7.4 HIGH
Network
fujixerox easy_netprint The kantan netprint App for Android 2.0.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a… CWE-295
Improper Certificate Validation 
CVE-2020-5522 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
206954 7.4 HIGH
Network
fujixerox easy_netprint The kantan netprint App for iOS 2.0.2 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a cra… CWE-295
Improper Certificate Validation 
CVE-2020-5521 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
206955 7.4 HIGH
Network
fujixerox netprint The netprint App for iOS 3.2.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted ce… CWE-295
Improper Certificate Validation 
CVE-2020-5520 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
206956 7.9 HIGH
Adjacent
philips hue_bridge_v2_firmware Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code… CWE-787
 Out-of-bounds Write
CVE-2020-6007 2024-11-21 14:34 2020-01-24 Show GitHub Exploit DB Packet Storm
206957 5.3 MEDIUM
Network
vmware
oracle
spring_framework
flexcube_private_banking
insurance_policy_administration_j2ee
insurance_rules_palette
retail_service_backbone
retail_back_office
weblogic_server
application_test…
Spring Framework, versions 5.2.x prior to 5.2.3 are vulnerable to CSRF attacks through CORS preflight requests that target Spring MVC (spring-webmvc module) or Spring WebFlux (spring-webflux module) … CWE-352
 Origin Validation Error
CVE-2020-5397 2024-11-21 14:34 2020-01-18 Show GitHub Exploit DB Packet Storm
206958 7.5 HIGH
Network
vmware
oracle
netapp
spring_framework
flexcube_private_banking
insurance_policy_administration_j2ee
insurance_rules_palette
retail_service_backbone
retail_back_office
weblogic_server
application_test…
In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it … CWE-494
 Download of Code Without Integrity Check
CVE-2020-5398 2024-11-21 14:34 2020-01-17 Show GitHub Exploit DB Packet Storm
206959 6.5 MEDIUM
Network
phpbb phpbb phpBB 3.2.8 allows a CSRF attack that can approve pending group memberships. CWE-352
 Origin Validation Error
CVE-2020-5502 2024-11-21 14:34 2020-01-15 Show GitHub Exploit DB Packet Storm
206960 4.3 MEDIUM
Network
phpbb phpbb phpBB 3.2.8 allows a CSRF attack that can modify a group avatar. CWE-352
 Origin Validation Error
CVE-2020-5501 2024-11-21 14:34 2020-01-15 Show GitHub Exploit DB Packet Storm