Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249471 5 警告 PrivaWall - PrivaWall Antivirus のスキャナエンジンにおけるマルウェアの検出を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1907 2012-03-29 15:43 2012-03-28 Show GitHub Exploit DB Packet Storm
249472 6.4 警告 MaraDNS - MaraDNS における無効なドメイン名の継続的な名前解決を可能にされる脆弱性 CWE-DesignError
CVE-2012-1570 2012-03-29 15:25 2012-03-17 Show GitHub Exploit DB Packet Storm
249473 5.8 警告 ヒューレット・パッカード - HP-UX の WBEM 実装におけるアクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-0126 2012-03-29 14:32 2012-03-27 Show GitHub Exploit DB Packet Storm
249474 3.3 注意 ヒューレット・パッカード - HP-UX の WBEM 実装におけるアクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-0125 2012-03-29 14:32 2012-03-27 Show GitHub Exploit DB Packet Storm
249475 3.6 注意 富士通 - 富士通 Interstage List Works における拒否型アクセス権の設定が有効にならない脆弱性 CWE-264
認可・権限・アクセス制御
- 2012-03-29 14:09 2012-03-26 Show GitHub Exploit DB Packet Storm
249476 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp および RoboHelp Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2133 2012-03-28 10:30 2011-08-9 Show GitHub Exploit DB Packet Storm
249477 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp および RoboHelp Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0613 2012-03-28 10:22 2011-05-12 Show GitHub Exploit DB Packet Storm
249478 5 警告 Zikula Foundation - Zikula における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3826 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
249479 5 警告 Zend Technologies Ltd. - Zend Server の Zend Framework における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3825 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
249480 5 警告 YOURLS - YOURLS における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3824 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213741 9.8 CRITICAL
Network
locutus locutus_php php/exec/escapeshellarg in Locutus PHP through 2.0.11 allows an attacker to achieve code execution. CWE-78
OS Command 
CVE-2020-13619 2024-11-21 14:01 2020-07-2 Show GitHub Exploit DB Packet Storm
213742 7.5 HIGH
Network
os4ed opensis openSIS through 7.4 allows Directory Traversal. CWE-22
Path Traversal
CVE-2020-13383 2024-11-21 14:01 2020-07-2 Show GitHub Exploit DB Packet Storm
213743 9.1 CRITICAL
Network
os4ed opensis openSIS through 7.4 has Incorrect Access Control. CWE-306
Missing Authentication for Critical Function
CVE-2020-13382 2024-11-21 14:01 2020-07-2 Show GitHub Exploit DB Packet Storm
213744 9.8 CRITICAL
Network
os4ed opensis openSIS through 7.4 allows SQL Injection. CWE-89
SQL Injection
CVE-2020-13381 2024-11-21 14:01 2020-07-2 Show GitHub Exploit DB Packet Storm
213745 9.8 CRITICAL
Network
os4ed opensis openSIS before 7.4 allows SQL Injection. CWE-89
SQL Injection
CVE-2020-13380 2024-11-21 14:01 2020-07-2 Show GitHub Exploit DB Packet Storm
213746 5.5 MEDIUM
Local
avast avg_antivirus
free_antivirus
An elevation of privilege vulnerability exists in Avast Free Antivirus and AVG AntiVirus Free before 20.4 due to improperly handling hard links. The vulnerability allows local users to take control o… NVD-CWE-noinfo
CVE-2020-13657 2024-11-21 14:01 2020-06-30 Show GitHub Exploit DB Packet Storm
213747 4.8 MEDIUM
Network
form_builder_for_magento_2_project form_builder_for_magento_2 Form Builder 2.1.0 for Magento has multiple XSS issues that can be exploited against Magento 2 admin accounts via the Current_url or email field, or the User-Agent HTTP header. CWE-79
Cross-site Scripting
CVE-2020-13423 2024-11-21 14:01 2020-06-29 Show GitHub Exploit DB Packet Storm
213748 7.5 HIGH
Network
acf_to_rest_api_project acf_to_rest_api An issue was discovered in the acf-to-rest-api plugin through 3.1.0 for WordPress. It allows an insecure direct object reference via permalinks manipulation, as demonstrated by a wp-json/acf/v3/optio… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-13700 2024-11-21 14:01 2020-06-25 Show GitHub Exploit DB Packet Storm
213749 9.8 CRITICAL
Network
bitrix24 bitrix24 Bitrix24 through 20.0.975 allows SSRF via an intranet IP address in the services/main/ajax.php?action=attachUrlPreview url parameter, if the destination URL hosts an HTML document containing '<meta n… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-13484 2024-11-21 14:01 2020-06-25 Show GitHub Exploit DB Packet Storm
213750 6.1 MEDIUM
Network
bitrix24 bitrix24 The Web Application Firewall in Bitrix24 through 20.0.0 allows XSS via the items[ITEMS][ID] parameter to the components/bitrix/mobileapp.list/ajax.php/ URI. CWE-79
Cross-site Scripting
CVE-2020-13483 2024-11-21 14:01 2020-06-25 Show GitHub Exploit DB Packet Storm