Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250411 6.8 警告 php link directory - phpLD の admin/conf_users_edit.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0643 2012-03-27 18:42 2011-01-25 Show GitHub Exploit DB Packet Storm
250412 4.3 警告 network-13 - N-13 News の news/admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0642 2012-03-27 18:42 2011-01-25 Show GitHub Exploit DB Packet Storm
250413 4.3 警告 heart5 - WordPress の StatPressCN プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0641 2012-03-27 18:42 2011-01-25 Show GitHub Exploit DB Packet Storm
250414 6.9 警告 Linux
kernel.org
- Linux の udev のデフォルト設定における任意のプログラムを実行される脆弱性 CWE-16
環境設定
CVE-2011-0640 2012-03-27 18:42 2011-01-25 Show GitHub Exploit DB Packet Storm
250415 6.9 警告 アップル - Apple の Mac OS X における任意のプログラムを実行される脆弱性 CWE-16
環境設定
CVE-2011-0639 2012-03-27 18:42 2011-01-24 Show GitHub Exploit DB Packet Storm
250416 6.9 警告 マイクロソフト - Microsoft Windows における任意のプログラムを実行される脆弱性 CWE-16
環境設定
CVE-2011-0638 2012-03-27 18:42 2011-01-24 Show GitHub Exploit DB Packet Storm
250417 4.9 警告 IBM - IBM AIX の FC SCSI プロトコルドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-0637 2012-03-27 18:42 2011-01-25 Show GitHub Exploit DB Packet Storm
250418 2.1 注意 NVIDIA - NVIDIA CUDA Toolkit の cudaHostAlloc 関数における重要なメモリを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-0636 2012-03-27 18:42 2011-01-22 Show GitHub Exploit DB Packet Storm
250419 6 警告 simploo - Simploo CMS における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2011-0635 2012-03-27 18:42 2011-01-22 Show GitHub Exploit DB Packet Storm
250420 4.3 警告 Gisle Aas - WWW::Mechanize などの製品で使用される LWP の Net::HTTPS モジュールにおけるサーバをなりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2011-0633 2012-03-27 18:42 2011-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209171 8.8 HIGH
Network
raspap raspap An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS (… CWE-78
OS Command 
CVE-2020-24572 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209172 4.7 MEDIUM
Local
fedoraproject selinux-policy An issue was discovered in the selinux-policy (aka Reference Policy) package 3.14 through 2020-08-24 because the .config/Yubico directory is mishandled. Consequently, when SELinux is in enforced mode… CWE-287
Improper Authentication
CVE-2020-24612 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209173 7.5 HIGH
Network
squid-cache
canonical
debian
fedoraproject
opensuse
squid
ubuntu_linux
debian_linux
fedora
leap
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only o… CWE-667
 Improper Locking
CVE-2020-24606 2024-11-21 14:15 2020-08-25 Show GitHub Exploit DB Packet Storm
209174 6.5 MEDIUM
Network
wso2 identity_server_analytics
api_microgateway
api_manager
enterprise_integrator
api_manager_analytics
The Management Console in certain WSO2 products allows XXE attacks during EventReceiver updates. This affects API Manager through 3.0.0, API Manager Analytics 2.2.0 and 2.5.0, API Microgateway 2.2.0,… CWE-611
XXE
CVE-2020-24591 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209175 9.1 CRITICAL
Network
wso2 api_microgateway
api_manager
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks. CWE-776
XML Entity Expansion
CVE-2020-24590 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209176 9.1 CRITICAL
Network
wso2 api_microgateway
api_manager
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML External Entity injection (XXE) attacks. CWE-611
XXE
CVE-2020-24589 2024-11-21 14:15 2020-08-22 Show GitHub Exploit DB Packet Storm
209177 5.3 MEDIUM
Network
wolfssl wolfssl An issue was discovered in the DTLS handshake implementation in wolfSSL before 4.5.0. Clear DTLS application_data messages in epoch 0 do not produce an out-of-order error. Instead, these messages are… NVD-CWE-noinfo
CVE-2020-24585 2024-11-21 14:15 2020-08-21 Show GitHub Exploit DB Packet Storm
209178 7.8 HIGH
Local
gog galaxy The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation from any authenticated user to SYSTEM by instructing the Wind… CWE-798
 Use of Hard-coded Credentials
CVE-2020-24574 2024-11-21 14:15 2020-08-21 Show GitHub Exploit DB Packet Storm
209179 7.5 HIGH
Network
nexusdb nexusdb NexusQA NexusDB before 4.50.23 allows the reading of files via ../ directory traversal. CWE-22
Path Traversal
CVE-2020-24571 2024-11-21 14:15 2020-08-21 Show GitHub Exploit DB Packet Storm
209180 7.8 HIGH
Local
voidtools everything voidtools Everything before 1.4.1 Beta Nightly 2020-08-18 allows privilege escalation via a Trojan horse urlmon.dll file in the installation directory. NOTE: this is only relevant if low-privileged u… NVD-CWE-noinfo
CVE-2020-24567 2024-11-21 14:15 2020-08-21 Show GitHub Exploit DB Packet Storm