Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228761 7.5 危険 アップル
Google
- 複数の製品で使用される Webkit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3050 2013-04-3 14:17 2012-03-21 Show GitHub Exploit DB Packet Storm
228762 2.1 注意 アップル - Apple iOS 6.1 の Identity Services における認証を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0963 2013-04-2 17:01 2013-01-29 Show GitHub Exploit DB Packet Storm
228763 10 危険 シーメンス - Siemens CP 1604 および CP 1616 インターフェースカードにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-0659 2013-04-2 16:43 2013-02-13 Show GitHub Exploit DB Packet Storm
228764 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3756 2013-04-2 16:42 2012-11-7 Show GitHub Exploit DB Packet Storm
228765 9.3 危険 Novell - Novell GroupWise Messenger および Novell Messenger におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1085 2013-04-2 16:41 2013-03-13 Show GitHub Exploit DB Packet Storm
228766 10 危険 Novell - Novell Identity Manager の Roles Based Provisioning Module における脆弱性 CWE-noinfo
情報不足
CVE-2013-1083 2013-04-2 16:40 2013-03-12 Show GitHub Exploit DB Packet Storm
228767 7.5 危険 Novell - Novell ZENworks Mobile Management の DUSAP.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1082 2013-04-2 16:40 2013-03-29 Show GitHub Exploit DB Packet Storm
228768 5 警告 アップル - Apple iOS および Apple TV における ASLR 保護メカニズムを回避される脆弱性 CWE-200
情報漏えい
CVE-2012-3749 2013-04-2 16:39 2012-11-3 Show GitHub Exploit DB Packet Storm
228769 5.8 警告 アップル
jabberd 2.x project
- jabberd2 の s2s/out.c におけるドメインになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-3525 2013-04-2 16:38 2012-08-25 Show GitHub Exploit DB Packet Storm
228770 5 警告 PostgreSQL.org
アップル
- PostgreSQL のコアサーバコンポーネントにおける任意のファイルの存在を特定される脆弱性 CWE-20
不適切な入力確認
CVE-2012-3489 2013-04-2 16:36 2012-08-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
216981 6.1 MEDIUM
Network
glpi-project glpi In GLPI before version 9.5.2, the `install/install.php` endpoint insecurely stores user input into the database as `url_base` and `url_base_api`. These settings are referenced throughout the applicat… - CVE-2020-15177 2024-11-21 14:05 2020-10-8 Show GitHub Exploit DB Packet Storm
216982 9.1 CRITICAL
Network
glpi-project glpi In GLPI before version 9.5.2, the `?pluginimage.send.php?` endpoint allows a user to specify an image from a plugin. The parameters can be maliciously crafted to instead delete the .htaccess file for… - CVE-2020-15175 2024-11-21 14:05 2020-10-8 Show GitHub Exploit DB Packet Storm
216983 3.5 LOW
Network
xmpp-http-upload_project xmpp-http-upload In xmpp-http-upload before version 0.4.0, when the GET method is attacked, attackers can read files which have a `.data` suffix and which are accompanied by a JSON file with the `.meta` suffix. This … - CVE-2020-15239 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
216984 5.6 MEDIUM
Network
electronjs electron Electron before versions 11.0.0-beta.6, 10.1.2, 9.3.1 or 8.5.2 is vulnerable to a context isolation bypass. Apps using both `contextIsolation` and `sandbox: true` are affected. Apps using both `conte… - CVE-2020-15215 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
216985 7.5 HIGH
Network
electronjs electron In Electron before versions 11.0.0-beta.1, 10.0.1, 9.3.0 or 8.5.1 the `will-navigate` event that apps use to prevent navigations to unexpected destinations as per our security recommendations can be … NVD-CWE-Other
CVE-2020-15174 2024-11-21 14:05 2020-10-7 Show GitHub Exploit DB Packet Storm
216986 7.5 HIGH
Network
trustwave
debian
modsecurity
debian_linux
Trustwave ModSecurity 3.x through 3.0.4 allows denial of service via a special request. NOTE: The discoverer reports "Trustwave has signaled they are disputing our claims." The CVE suggests that ther… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-15598 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
216987 5.9 MEDIUM
Network
shrinerb shrine In Shrine before version 3.3.0, when using the `derivation_endpoint` plugin, it's possible for the attacker to use a timing attack to guess the signature of the derivation URL. The problem has been f… - CVE-2020-15237 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
216988 7.5 HIGH
Network
ractf core In RACTF before commit f3dc89b, unauthenticated users are able to get the value of sensitive config keys that would normally be hidden to everyone except admins. All versions after commit f3dc89b9f6a… - CVE-2020-15235 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
216989 7.5 HIGH
Network
requarks wiki.js In Wiki.js before version 2.5.151, directory traversal outside of Wiki.js context is possible when a storage module with local asset cache fetching is enabled. A malicious user can potentially read a… - CVE-2020-15236 2024-11-21 14:05 2020-10-6 Show GitHub Exploit DB Packet Storm
216990 4.8 MEDIUM
Network
ory fosite ORY Fosite is a security first OAuth2 & OpenID Connect framework for Go. In Fosite before version 0.34.1, the OAuth 2.0 Client's registered redirect URLs and the redirect URL provided at the OAuth2 A… CWE-178
 Improper Handling of Case Sensitivity
CVE-2020-15234 2024-11-21 14:05 2020-10-3 Show GitHub Exploit DB Packet Storm