Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
244641 9.3 危険 TWD Industries - Remote-Anything の Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4057 2012-07-30 11:20 2012-07-25 Show GitHub Exploit DB Packet Storm
244642 7.5 危険 Uiga - Uiga Personal Portal の index2.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4056 2012-07-30 11:11 2012-07-25 Show GitHub Exploit DB Packet Storm
244643 7.5 危険 Uiga - Uiga FanClub の index2.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4055 2012-07-30 11:09 2012-07-25 Show GitHub Exploit DB Packet Storm
244644 6.9 警告 CPE17 - CPE17 Autorun Killer の readfile 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4054 2012-07-30 11:04 2012-07-25 Show GitHub Exploit DB Packet Storm
244645 3.5 注意 Oleg Kovalchuk - Drupal 用の cctags モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2310 2012-07-30 11:03 2012-05-2 Show GitHub Exploit DB Packet Storm
244646 3.5 注意 Propeople - Drupal 用の Glossify Internal Links Auto SEO モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2309 2012-07-30 11:03 2012-05-2 Show GitHub Exploit DB Packet Storm
244647 3.5 注意 tahiticlic - Drupal 用の Taxonomy Grid : Catalog モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2308 2012-07-30 11:01 2012-05-2 Show GitHub Exploit DB Packet Storm
244648 6.8 警告 Willem Van Der Plaat - Drupal 用の Addressbook モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2307 2012-07-30 11:00 2012-05-2 Show GitHub Exploit DB Packet Storm
244649 7.5 危険 Willem Van Der Plaat - Drupal 用の Addressbook モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2306 2012-07-30 10:59 2012-05-2 Show GitHub Exploit DB Packet Storm
244650 6.8 警告 Justin Ellison - Drupal 用の Node Gallery モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2305 2012-07-30 10:50 2012-05-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
218121 7.5 HIGH
Network
uip_project
open-iscsi_project
siemens
uip
open-iscsi
sentron_3va_com100_firmware
sentron_3va_com800_firmware
sentron_pac3200_firmware
sentron_pac4200_firmware
An issue was discovered in Contiki through 3.0. An Out-of-Bounds Read vulnerability exists in the uIP TCP/IP Stack component when calculating the checksums for IP packets in upper_layer_chksum in net… CWE-125
Out-of-bounds Read
CVE-2020-13987 2024-11-21 14:02 2020-12-12 Show GitHub Exploit DB Packet Storm
218122 7.5 HIGH
Network
contiki-os contiki An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when handling RPL extension headers of IPv6 network packets in rpl_remove_header in net/rpl/r… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-13986 2024-11-21 14:02 2020-12-12 Show GitHub Exploit DB Packet Storm
218123 7.5 HIGH
Network
contiki-os contiki An issue was discovered in Contiki through 3.0. A memory corruption vulnerability exists in the uIP TCP/IP stack component when handling RPL extension headers of IPv6 network packets in rpl_remove_he… CWE-787
CWE-190
CWE-681
 Out-of-bounds Write
 Integer Overflow or Wraparound
 Incorrect Conversion between Numeric Types
CVE-2020-13985 2024-11-21 14:02 2020-12-12 Show GitHub Exploit DB Packet Storm
218124 7.5 HIGH
Network
contiki-os contiki An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when processing IPv6 extension headers in ext_hdr_options_process in net/ipv6/uip6.c. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-13984 2024-11-21 14:02 2020-12-12 Show GitHub Exploit DB Packet Storm
218125 5.3 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress was prone to a SQL injection within divelog.php, allowing unauthenticated users to retrieve data from the database via the divelog.php filter_diver parameter. CWE-89
SQL Injection
CVE-2020-14207 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
218126 6.1 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress is prone to unauthenticated XSS within the filter function (via an arbitrary parameter). CWE-79
Cross-site Scripting
CVE-2020-14206 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
218127 5.3 MEDIUM
Network
divebook_project divebook The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate th… CWE-862
 Missing Authorization
CVE-2020-14205 2024-11-21 14:02 2020-12-9 Show GitHub Exploit DB Packet Storm
218128 6.5 MEDIUM
Network
apache apisix In Apache APISIX, the user enabled the Admin API and deleted the Admin API access IP restriction rules. Eventually, the default token is allowed to access APISIX management data. This affects version… NVD-CWE-Other
CVE-2020-13945 2024-11-21 14:02 2020-12-8 Show GitHub Exploit DB Packet Storm
218129 4.3 MEDIUM
Network
samba
redhat
samba
enterprise_linux
storage
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be u… - CVE-2020-14318 2024-11-21 14:02 2020-12-4 Show GitHub Exploit DB Packet Storm
218130 5.3 MEDIUM
Network
apache
quarkus
oracle
netapp
httpclient
quarkus
primavera_unifier
peoplesoft_enterprise_peopletools
data_integrator
peoplesoft_enterprise_pt_peopletools
nosql_database
retail_customer_management_and_segmenta…
Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library as java.net.URI object and pick the wrong target host… NVD-CWE-noinfo
CVE-2020-13956 2024-11-21 14:02 2020-12-3 Show GitHub Exploit DB Packet Storm