Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249941 4.4 警告 レッドハット - libvirt の virSecurityManagerGetPrivateData 関数における任意のファイルを読まれる脆弱性 CWE-DesignError
CVE-2011-2178 2012-03-27 18:43 2011-08-10 Show GitHub Exploit DB Packet Storm
249942 2.1 注意 GNOME Project - GNOME NetworkManager におけるワイヤレスネットワーク共有制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-2176 2012-03-27 18:43 2011-09-2 Show GitHub Exploit DB Packet Storm
249943 4.3 警告 Wireshark - Wireshark の visual_read 関数における整数アンダーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2175 2012-03-27 18:43 2011-06-6 Show GitHub Exploit DB Packet Storm
249944 4.3 警告 Wireshark - Wireshark の tvb_uncompress 関数におけるにおけるメモリ二重開放の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2174 2012-03-27 18:43 2011-05-31 Show GitHub Exploit DB Packet Storm
249945 4 警告 IBM - IBM WebSphere Portal の OutputMediator オブジェクト実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2173 2012-03-27 18:43 2011-02-23 Show GitHub Exploit DB Packet Storm
249946 4.3 警告 IBM - IBM WebSphere Portal の検索センターにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2172 2012-03-27 18:43 2011-05-26 Show GitHub Exploit DB Packet Storm
249947 5 警告 OpenBSD - OpenBSD の glob 実装における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2168 2012-03-27 18:43 2011-05-24 Show GitHub Exploit DB Packet Storm
249948 6.5 警告 Timo Sirainen - Dovecot の script-login におけるディレクトトラバーサル攻撃を実行される脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2167 2012-03-27 18:43 2011-05-24 Show GitHub Exploit DB Packet Storm
249949 6.5 警告 Timo Sirainen - Dovecot の script-login におけるアクセス制限を回避される脆弱性 CWE-16
環境設定
CVE-2011-2166 2012-03-27 18:43 2011-05-24 Show GitHub Exploit DB Packet Storm
249950 6.8 警告 ウォッチガード・テクノロジー - WatchGuard XCS の STARTTLS 実装における暗号化された SMTP セッションに任意のコマンドを挿入される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2165 2012-03-27 18:43 2011-04-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209511 6.1 MEDIUM
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity… CWE-79
Cross-site Scripting
CVE-2020-24706 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209512 8.8 HIGH
Network
wso2 identity_server_analytics
identity_server_as_key_manager
identity_server
api_manager
api_manager_analytics
iot_server
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24705 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209513 6.1 MEDIUM
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.… CWE-79
Cross-site Scripting
CVE-2020-24704 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209514 8.8 HIGH
Network
wso2 identity_server
enterprise_integrator
api_microgateway
api_manager_analytics
iot_server
identity_server_analytics
data_analytics_server
identity_server_as_key_manager
api_mana…
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Ses… NVD-CWE-noinfo
CVE-2020-24703 2024-11-21 14:15 2020-08-28 Show GitHub Exploit DB Packet Storm
209515 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks. CWE-79
Cross-site Scripting
CVE-2020-24599 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209516 6.1 MEDIUM
Network
joomla joomla\! An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect. CWE-601
Open Redirect
CVE-2020-24598 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209517 5.9 MEDIUM
Network
gnome
fedoraproject
geary
fedora
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not confi… CWE-295
Improper Certificate Validation 
CVE-2020-24661 2024-11-21 14:15 2020-08-27 Show GitHub Exploit DB Packet Storm
209518 6.5 MEDIUM
Network
maltego maltego Maltego before 4.2.12 allows XXE attacks. CWE-611
XXE
CVE-2020-24656 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209519 9.8 CRITICAL
Network
expo expo secure-store in Expo through 2.16.1 on iOS provides the insecure kSecAttrAccessibleAlwaysThisDeviceOnly policy when WHEN_UNLOCKED_THIS_DEVICE_ONLY is used. NVD-CWE-noinfo
CVE-2020-24653 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm
209520 4.9 MEDIUM
Network
sonatype nexus In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user. CWE-522
 Insufficiently Protected Credentials
CVE-2020-24622 2024-11-21 14:15 2020-08-26 Show GitHub Exploit DB Packet Storm