Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228431 8.3 危険 Wikka Development Team - WikkaWiki における任意の設定ファイルをアップロードされる脆弱性 - CVE-2007-2613 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228432 7.5 危険 Wikka Development Team - WikkaWiki の libs/Wakka.class.php における SQL インジェクションの脆弱性 - CVE-2007-2612 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228433 6.8 警告 wavelink media - TutorialCMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2600 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228434 7.5 危険 wavelink media - TutorialCMS における SQL インジェクションの脆弱性 - CVE-2007-2599 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228435 10 危険 Simplenews Project - SimpleNews の print.php における SQL インジェクションの脆弱性 - CVE-2007-2598 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228436 7.5 危険 telltargetcms - telltarget CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2597 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228437 6.5 警告 rscript - RSAuction におけるユーザ自身のアカウントステータスを Suspended から Active に変更される脆弱性 - CVE-2007-2595 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228438 7.5 危険 phpmyportal - phpMyPortal の inc/articles.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2594 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
228439 7.5 危険 vm watermark - Gallery 用の vm watermark における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2575 2012-12-20 18:19 2007-05-9 Show GitHub Exploit DB Packet Storm
228440 7.5 危険 phptree - PHPtree の plugin/HP_DEV/cms2.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2573 2012-12-20 18:19 2007-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197071 5.4 MEDIUM
Network
ibm rational_doors_next_generation
doors_next
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin… CWE-79
Cross-site Scripting
CVE-2020-4297 2024-11-21 14:32 2020-06-20 Show GitHub Exploit DB Packet Storm
197072 5.4 MEDIUM
Network
ibm rational_doors_next_generation
doors_next
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin… CWE-79
Cross-site Scripting
CVE-2020-4295 2024-11-21 14:32 2020-06-20 Show GitHub Exploit DB Packet Storm
197073 5.4 MEDIUM
Network
ibm rational_doors_next_generation
doors_next
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin… CWE-79
Cross-site Scripting
CVE-2020-4281 2024-11-21 14:32 2020-06-20 Show GitHub Exploit DB Packet Storm
197074 7.3 HIGH
Network
mversion_project mversion In mversion before 2.0.0, there is a command injection vulnerability. This issue may lead to remote code execution if a client of the library calls the vulnerable method with untrusted input. This vu… - CVE-2020-4059 2024-11-21 14:32 2020-06-19 Show GitHub Exploit DB Packet Storm
197075 5.3 MEDIUM
Network
ibm business_automation_workflow
business_process_manager
IBM Business Automation Workflow and IBM Business Process Manager (IBM Business Process Manager Express 8.5.5, 8.5.6, 8.5.7, and 8.6) could allow a remote attacker to obtain sensitive information whe… CWE-209
Information Exposure Through an Error Message
CVE-2020-4532 2024-11-21 14:32 2020-06-18 Show GitHub Exploit DB Packet Storm
197076 7.3 HIGH
Network
sanitize_project sanitize In Sanitize (RubyGem sanitize) greater than or equal to 3.0.0 and less than 5.2.1, there is a cross-site scripting vulnerability. When HTML is sanitized using Sanitize's "relaxed" config, or a custom… - CVE-2020-4054 2024-11-21 14:32 2020-06-17 Show GitHub Exploit DB Packet Storm
197077 6.8 MEDIUM
Network
helm helm In Helm greater than or equal to 3.0.0 and less than 3.2.4, a path traversal attack is possible when installing Helm plugins from a tar archive over HTTP. It is possible for a malicious plugin author… - CVE-2020-4053 2024-11-21 14:32 2020-06-17 Show GitHub Exploit DB Packet Storm
197078 6.1 MEDIUM
Network
requarks wiki.js In Wiki.js before 2.4.107, there is a stored cross-site scripting through template injection. This vulnerability exists due to an insecure validation mechanism intended to insert v-pre tags into rend… - CVE-2020-4052 2024-11-21 14:32 2020-06-17 Show GitHub Exploit DB Packet Storm
197079 6.5 MEDIUM
Network
ibm mq IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients based on the certificate distinguished name SSLPEER setting. IBM X-Force ID: 177403. CWE-295
Improper Certificate Validation 
CVE-2020-4320 2024-11-21 14:32 2020-06-16 Show GitHub Exploit DB Packet Storm
197080 7.5 HIGH
Network
ibm mq
websphere_mq
IBM MQ and MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 C are vulnerable to a denial of service attack due to an error within the Data Conversion logic. IBM X-Force ID: 177081. NVD-CWE-noinfo
CVE-2020-4310 2024-11-21 14:32 2020-06-16 Show GitHub Exploit DB Packet Storm