Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230871 10 危険 tis - TIS Internet FWTK の ftp-gw におけるバッファオーバーフローの脆弱性 - CVE-2007-0201 2012-12-20 18:19 2007-01-11 Show GitHub Exploit DB Packet Storm
230872 6.8 警告 サン・マイクロシステムズ - iPlanet Web Server の /search におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0183 2012-12-20 18:19 2007-01-12 Show GitHub Exploit DB Packet Storm
230873 7.5 危険 scriptaty - magic photo storage の Web サイトにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0182 2012-12-20 18:19 2007-01-12 Show GitHub Exploit DB Packet Storm
230874 7.5 危険 scriptaty - magic photo storage の Web サイトにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0181 2012-12-20 18:19 2007-01-10 Show GitHub Exploit DB Packet Storm
230875 7.5 危険 PHPKIT - PHPKIT の comment.php における SQL インジェクションの脆弱性 - CVE-2007-0179 2012-12-20 18:19 2007-01-10 Show GitHub Exploit DB Packet Storm
230876 7.5 危険 sina - Sina UC2006 の BRWOSSRE2UC.dll ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-0174 2012-12-20 18:19 2007-01-10 Show GitHub Exploit DB Packet Storm
230877 7.5 危険 voice of web - AllMyGuests における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0172 2012-12-20 18:19 2007-01-10 Show GitHub Exploit DB Packet Storm
230878 7.5 危険 voice of web - AllMyLinks の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0171 2012-12-20 18:19 2007-01-10 Show GitHub Exploit DB Packet Storm
230879 7.5 危険 wgs-ppc
ppc search engine
- WGS-PPC における PHP ファイルインクルージョンの脆弱性 - CVE-2007-0167 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
230880 7.8 危険 securekit - SecureKit Steganography における認証要求を回避される脆弱性 - CVE-2007-0163 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211111 8.7 HIGH
Network
gitlab gitlab An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log CWE-79
Cross-site Scripting
CVE-2020-13340 2024-11-21 14:01 2020-10-8 Show GitHub Exploit DB Packet Storm
211112 6.5 MEDIUM
Network
gitlab gitlab An issue has been discovered in GitLab affecting all versions before 13.2.10, 13.3.7 and 13.4.2: XSS in SVG File Preview. Overall impact is limited due to the current user only being impacted. CWE-79
Cross-site Scripting
CVE-2020-13339 2024-11-21 14:01 2020-10-8 Show GitHub Exploit DB Packet Storm
211113 2.7 LOW
Network
gitlab gitlab An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-13342 2024-11-21 14:01 2020-10-8 Show GitHub Exploit DB Packet Storm
211114 9.1 CRITICAL
Network
gitlab gitlab A command injection vulnerability was discovered in Gitlab runner versions prior to 13.2.4, 13.3.2 and 13.4.1. When the runner is configured on a Windows system with a docker executor, which allows t… CWE-22
Path Traversal
CVE-2020-13347 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211115 6.5 MEDIUM
Network
gitlab gitlab Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API. CWE-459
 Incomplete Cleanup
CVE-2020-13346 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211116 4.3 MEDIUM
Network
gitlab gitlab Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group. CWE-863
 Incorrect Authorization
CVE-2020-13335 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211117 7.5 HIGH
Network
gitlab gitlab In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query CWE-863
 Incorrect Authorization
CVE-2020-13334 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211118 5.4 MEDIUM
Network
gitlab gitlab An issue has been discovered in GitLab affecting all versions starting from 10.8. Reflected XSS on Multiple Routes CWE-79
Cross-site Scripting
CVE-2020-13345 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211119 8.8 HIGH
Network
gitlab gitlab An issue has been discovered in GitLab affecting all versions starting from 11.2. Unauthorized Users Can View Custom Project Template CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-13343 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm
211120 4.3 MEDIUM
Network
gitlab gitlab A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtrack… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-13333 2024-11-21 14:01 2020-10-7 Show GitHub Exploit DB Packet Storm