Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252461 5.5 警告 オラクル - Oracle Fusion Middleware の Oracle Web Services Manager コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-3568 2012-01-20 15:17 2012-01-17 Show GitHub Exploit DB Packet Storm
252462 6.4 警告 オラクル - Oracle Fusion Middleware における Search の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0083 2012-01-20 15:09 2012-01-17 Show GitHub Exploit DB Packet Storm
252463 5 警告 オラクル - Oracle Fusion Middleware の Oracle WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-3566 2012-01-20 12:12 2012-01-17 Show GitHub Exploit DB Packet Storm
252464 2.6 注意 オラクル - Oracle WebLogic Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0077 2012-01-20 12:09 2012-01-20 Show GitHub Exploit DB Packet Storm
252465 5 警告 osCommerce - osCommerce におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2005-2330 2012-01-20 12:08 2012-01-20 Show GitHub Exploit DB Packet Storm
252466 4.3 警告 osCommerce - osCommerce 日本語版におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0311 2012-01-20 12:08 2012-01-20 Show GitHub Exploit DB Packet Storm
252467 2.7 注意 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0091 2012-01-20 11:36 2012-01-17 Show GitHub Exploit DB Packet Storm
252468 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise HCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0089 2012-01-20 11:35 2012-01-17 Show GitHub Exploit DB Packet Storm
252469 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise HCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0076 2012-01-20 11:35 2012-01-17 Show GitHub Exploit DB Packet Storm
252470 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise HCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0088 2012-01-20 11:35 2012-01-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215481 5.4 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. When 2 factor authentication was enabled for groups, a malicious user could bypass that restriction by sending a s… NVD-CWE-noinfo
CVE-2020-13297 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215482 10.0 CRITICAL
Network
gitlab gitlab GitLab CE/EE version 13.3 prior to 13.3.4 was vulnerable to an OAuth authorization scope change without user consent in the middle of the authorization flow. CWE-863
 Incorrect Authorization
CVE-2020-13300 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215483 8.1 HIGH
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. The revocation feature was not revoking all session tokens and one could re-use it to obtain a valid session. CWE-613
 Insufficient Session Expiration
CVE-2020-13299 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215484 5.4 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. In certain cases an invalid username could be accepted when 2FA is activated. CWE-306
Missing Authentication for Critical Function
CVE-2020-13289 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215485 4.3 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Project reporters and above could see confidential EPIC attached to confidential issues NVD-CWE-noinfo
CVE-2020-13287 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215486 6.5 MEDIUM
Network
gitlab gitlab A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. API Authorization Using Outdated CI Job Token CWE-863
 Incorrect Authorization
CVE-2020-13284 2024-11-21 14:00 2020-09-15 Show GitHub Exploit DB Packet Storm
215487 7.5 HIGH
Network
microchip atsama5d21c-cu_firmware
atsama5d21c-cur_firmware
atsama5d22c-cn_firmware
atsama5d22c-cnr_firmware
atsama5d22c-cu_firmware
atsama5d22c-cur_firmware
atsama5d23c-cn_firmware
atsama5…
The Secure Monitor in Microchip Atmel ATSAMA5 products use a hardcoded key to encrypt and authenticate secure applets. CWE-798
 Use of Hard-coded Credentials
CVE-2020-12789 2024-11-21 14:00 2020-09-14 Show GitHub Exploit DB Packet Storm
215488 7.5 HIGH
Network
microchip atsama5d21c-cu_firmware
atsama5d21c-cur_firmware
atsama5d22c-cn_firmware
atsama5d22c-cnr_firmware
atsama5d22c-cu_firmware
atsama5d22c-cur_firmware
atsama5d23c-cn_firmware
atsama5…
CMAC verification functionality in Microchip Atmel ATSAMA5 products is vulnerable to vulnerable to timing and power analysis attacks. CWE-203
 Information Exposure Through Discrepancy
CVE-2020-12788 2024-11-21 14:00 2020-09-14 Show GitHub Exploit DB Packet Storm
215489 7.5 HIGH
Network
microchip atsama5d21c-cu_firmware
atsama5d21c-cur_firmware
atsama5d22c-cn_firmware
atsama5d22c-cnr_firmware
atsama5d22c-cu_firmware
atsama5d22c-cur_firmware
atsama5d23c-cn_firmware
atsama5…
Microchip Atmel ATSAMA5 products in Secure Mode allow an attacker to bypass existing security mechanisms related to applet handling. NVD-CWE-noinfo
CVE-2020-12787 2024-11-21 14:00 2020-09-14 Show GitHub Exploit DB Packet Storm
215490 8.8 HIGH
Network
loway queuemetrics A SQL injection vulnerability at a tpf URI in Loway QueueMetrics before 19.04.1 allows remote authenticated attackers to execute arbitrary SQL commands via the TASKS_LIST__pt.querystring parameter. CWE-89
SQL Injection
CVE-2020-13127 2024-11-21 14:00 2020-09-10 Show GitHub Exploit DB Packet Storm