Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231291 5 警告 Simple Invoices - Simple Invoices の include/auth/auth.php における重要な情報を取得される脆弱性 - CVE-2007-1341 2012-12-20 18:19 2007-03-8 Show GitHub Exploit DB Packet Storm
231292 7.5 危険 weltennetz - Weltennetz News-Letterman の eintrag.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1340 2012-12-20 18:19 2007-03-8 Show GitHub Exploit DB Packet Storm
231293 7.8 危険 VMware - VMware Workstation の仮想マシンプロセスにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1337 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
231294 9.3 危険 tks banking solutions - TKS Banking Solutions ePortfolio Java におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-1332 2012-12-20 18:19 2007-03-7 Show GitHub Exploit DB Packet Storm
231295 4.3 警告 tks banking solutions - TKS Banking Solutions ePortfolio Java におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1331 2012-12-20 18:19 2007-03-7 Show GitHub Exploit DB Packet Storm
231296 7.8 危険 silcnet - silc-server の apps/silcd/command.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1327 2012-12-20 18:19 2007-03-7 Show GitHub Exploit DB Packet Storm
231297 7.5 危険 s9y - Serendipity の index.php における SQL インジェクションの脆弱性 - CVE-2007-1326 2012-12-20 18:19 2007-03-7 Show GitHub Exploit DB Packet Storm
231298 7.1 危険 The phpMyAdmin Project - phpMyAdmin の libraries/common.lib.php におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1325 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
231299 5 警告 snapgear - SnapGear におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1324 2012-12-20 18:19 2007-03-7 Show GitHub Exploit DB Packet Storm
231300 6.8 警告 savas place - Sava's Guestbook の add2.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1305 2012-12-20 18:19 2007-03-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211451 6.1 MEDIUM
Network
hcltech digital_experience HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross-site scripting (XSS). The vulnerability could be employed in a reflected or non-persistent XSS attack. CWE-79
Cross-site Scripting
CVE-2020-14223 2024-11-21 14:02 2020-10-2 Show GitHub Exploit DB Packet Storm
211452 5.5 MEDIUM
Local
apache nifi In Apache NiFi 1.0.0 to 1.11.4, the notification service manager and various policy authorizer and user group provider objects allowed trusted administrators to inadvertently configure a potentially … CWE-611
XXE
CVE-2020-13940 2024-11-21 14:02 2020-10-2 Show GitHub Exploit DB Packet Storm
211453 8.1 HIGH
Network
apache superset In the course of work on the open source project it was discovered that authenticated users running queries against Hive and Presto database engines could access information via a number of templated… NVD-CWE-noinfo
CVE-2020-13952 2024-11-21 14:02 2020-10-1 Show GitHub Exploit DB Packet Storm
211454 7.2 HIGH
Network
ozeki ozeki_ng_sms_gateway An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. It stores SMS messages in .NET serialized format on the filesystem. By generating (and writing to the disk) malicious .NET serialized f… CWE-502
 Deserialization of Untrusted Data
CVE-2020-14030 2024-11-21 14:02 2020-10-1 Show GitHub Exploit DB Packet Storm
211455 5.3 MEDIUM
Network
apache tapestry In Apache Tapestry from 5.4.0 to 5.5.0, crafting specific URLs, an attacker can download files inside the WEB-INF folder of the WAR being run. CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-13953 2024-11-21 14:02 2020-10-1 Show GitHub Exploit DB Packet Storm
211456 7.5 HIGH
Network
apache openmeetings Attackers can use public NetTest web service of Apache OpenMeetings 4.0.0-5.0.0 to organize denial of service attack. NVD-CWE-noinfo
CVE-2020-13951 2024-11-21 14:02 2020-10-1 Show GitHub Exploit DB Packet Storm
211457 9.8 CRITICAL
Network
airforce nitf_extract_utility U.S. Air Force Sensor Data Management System extract75 has a buffer overflow that leads to code execution. An overflow in a global variable (sBuffer) leads to a Write-What-Where outcome. Writing beyo… CWE-787
 Out-of-bounds Write
CVE-2020-13995 2024-11-21 14:02 2020-09-25 Show GitHub Exploit DB Packet Storm
211458 7.5 HIGH
Network
jerryscript jerryscript vm/opcodes.c in JerryScript 2.2.0 allows attackers to hijack the flow of control by controlling a register. NVD-CWE-noinfo
CVE-2020-13991 2024-11-21 14:02 2020-09-25 Show GitHub Exploit DB Packet Storm
211459 7.2 HIGH
Network
ozeki ozeki_ng_sms_gateway An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The outbox functionality of the TXT File module can be used to delete all/most files in a folder. Because the product usually runs as N… NVD-CWE-noinfo
CVE-2020-14031 2024-11-21 14:02 2020-09-23 Show GitHub Exploit DB Packet Storm
211460 7.2 HIGH
Network
ozeki ozeki_ng_sms_gateway An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. By leveraging a path traversal vulnerability in the Autoreply module's Script Name, an attacker may write to or overwrite arbitrary fil… CWE-22
Path Traversal
CVE-2020-14028 2024-11-21 14:02 2020-09-23 Show GitHub Exploit DB Packet Storm