Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248821 9.3 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内の win32k.sys における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1848 2012-05-10 18:13 2012-05-8 Show GitHub Exploit DB Packet Storm
248822 10 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内の win32k.sys における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0181 2012-05-10 18:12 2012-05-8 Show GitHub Exploit DB Packet Storm
248823 7.2 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0180 2012-05-10 18:11 2012-05-8 Show GitHub Exploit DB Packet Storm
248824 9.3 危険 マイクロソフト - Windows 上で稼働する Microsoft Silverlight におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0176 2012-05-10 18:09 2012-05-8 Show GitHub Exploit DB Packet Storm
248825 9.3 危険 マイクロソフト - Microsoft Office 2003 および 2007 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2012-0167 2012-05-10 18:08 2012-05-8 Show GitHub Exploit DB Packet Storm
248826 9.3 危険 マイクロソフト - 複数の Microsoft 製品の GDI+ における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-0165 2012-05-10 18:04 2012-05-8 Show GitHub Exploit DB Packet Storm
248827 5 警告 マイクロソフト - Microsoft .NET Framework 4 におけるサービス運用妨害 (アプリケーションハング) の脆弱性 CWE-DesignError
CVE-2012-0164 2012-05-10 17:58 2012-05-8 Show GitHub Exploit DB Packet Storm
248828 9.3 危険 マイクロソフト - Microsoft .NET Framework 4 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0162 2012-05-10 17:57 2012-05-8 Show GitHub Exploit DB Packet Storm
248829 6.8 警告 マイクロソフト - 複数の Microsoft Windows 製品の partmgr.sys における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0178 2012-05-10 17:08 2012-05-8 Show GitHub Exploit DB Packet Storm
248830 6.8 警告 マイクロソフト - Microsoft Windows Server 2008 R2 および Windows 7 の tcpip.sys におけるメモリ二重解放の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0179 2012-05-10 16:09 2012-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212001 7.5 HIGH
Network
ruckuswireless unleashed_firmware webs in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to cause a denial of service (Segmentation fault) to the webserver via an unauthenticated crafted HTTP request. This… NVD-CWE-noinfo
CVE-2020-13914 2024-11-21 14:02 2020-07-29 Show GitHub Exploit DB Packet Storm
212002 6.1 MEDIUM
Network
ruckuswireless unleashed_firmware An XSS issue in emfd in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to execute JavaScript code via an unauthenticated crafted HTTP request. This affects C110, E510, H32… CWE-79
Cross-site Scripting
CVE-2020-13913 2024-11-21 14:02 2020-07-29 Show GitHub Exploit DB Packet Storm
212003 6.5 MEDIUM
Network
redhat jboss_fuse
single_sign-on
openshift_application_runtimes
jboss_enterprise_application_platform_continuous_delivery
amq
A vulnerability was found in Wildfly's Enterprise Java Beans (EJB) versions shipped with Red Hat JBoss EAP 7, where SessionOpenInvocations are never removed from the remote InvocationTracker after a … - CVE-2020-14307 2024-11-21 14:02 2020-07-25 Show GitHub Exploit DB Packet Storm
212004 6.5 MEDIUM
Network
redhat jboss_fuse
single_sign-on
openshift_application_runtimes
jboss_enterprise_application_platform_continuous_delivery
amq
jboss-ejb-client
A flaw was discovered in Wildfly's EJB Client as shipped with Red Hat JBoss EAP 7, where some specific EJB transaction objects may get accumulated over the time and can cause services to slow down an… - CVE-2020-14297 2024-11-21 14:02 2020-07-25 Show GitHub Exploit DB Packet Storm
212005 5.4 MEDIUM
Network
atlassian confluence_server
confluence_data_center
Affected versions of Atlassian Confluence Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability in user macro parameters.… CWE-79
Cross-site Scripting
CVE-2020-14175 2024-11-21 14:02 2020-07-24 Show GitHub Exploit DB Packet Storm
212006 6.1 MEDIUM
Network
tc_custom_javascript_project tc_custom_javascript A stored Cross-Site Scripting (XSS) vulnerability in the TC Custom JavaScript plugin before 1.2.2 for WordPress allows unauthenticated remote attackers to inject arbitrary JavaScript via the tccj-con… CWE-79
Cross-site Scripting
CVE-2020-14063 2024-11-21 14:02 2020-07-22 Show GitHub Exploit DB Packet Storm
212007 6.1 MEDIUM
Network
apache activemq_artemis In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into … CWE-79
Cross-site Scripting
CVE-2020-13932 2024-11-21 14:02 2020-07-21 Show GitHub Exploit DB Packet Storm
212008 5.3 MEDIUM
Network
golang
opensuse
go
leap
In Go before 1.13.13 and 1.14.x before 1.14.5, Certificate.Verify may lack a check on the VerifyOptions.KeyUsages EKU requirements (if VerifyOptions.Roots equals nil and the installation is on Window… CWE-295
Improper Certificate Validation 
CVE-2020-14039 2024-11-21 14:02 2020-07-18 Show GitHub Exploit DB Packet Storm
212009 9.8 CRITICAL
Network
kramdown_project
debian
fedoraproject
canonical
kramdown
debian_linux
fedora
ubuntu_linux
The kramdown gem before 2.3.0 for Ruby processes the template option inside Kramdown documents by default, which allows unintended read access (such as template="/etc/passwd") or unintended embedded … CWE-862
 Missing Authorization
CVE-2020-14001 2024-11-21 14:02 2020-07-18 Show GitHub Exploit DB Packet Storm
212010 9.8 CRITICAL
Network
mit scratch-vm MIT Lifelong Kindergarten Scratch scratch-vm before 0.2.0-prerelease.20200714185213 loads extension URLs from untrusted project.json files with certain _ characters, resulting in remote code executio… CWE-502
 Deserialization of Untrusted Data
CVE-2020-14000 2024-11-21 14:02 2020-07-17 Show GitHub Exploit DB Packet Storm