Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258261 4.3 警告 アップル
サイバートラスト株式会社
Ruby-lang.org
レッドハット
- Apple Mac OS X の Ruby WEBrick HTTP サーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0541 2011-07-28 10:06 2010-06-15 Show GitHub Exploit DB Packet Storm
258262 5 警告 サイバートラスト株式会社
Ruby-lang.org
レッドハット
- Ruby の WEBrick におけるウィンドウのタイトルを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4492 2011-07-28 10:04 2010-01-13 Show GitHub Exploit DB Packet Storm
258263 2.6 注意 Plone Foundation - Plone におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1340 2011-07-27 12:02 2011-07-27 Show GitHub Exploit DB Packet Storm
258264 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2626 2011-07-27 10:35 2011-06-28 Show GitHub Exploit DB Packet Storm
258265 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2625 2011-07-27 10:34 2011-06-28 Show GitHub Exploit DB Packet Storm
258266 4.3 警告 Opera Software ASA - Opera におけるサービス運用妨害 (アプリケーションハング) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2624 2011-07-27 10:34 2011-06-28 Show GitHub Exploit DB Packet Storm
258267 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (アプリケーションクラッシュおよびハング) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2623 2011-07-27 10:33 2011-06-28 Show GitHub Exploit DB Packet Storm
258268 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2622 2011-07-27 10:32 2011-06-28 Show GitHub Exploit DB Packet Storm
258269 7.2 危険 アップル - Apple iOS の IOMobileFrameBuffer における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0227 2011-07-27 10:31 2011-07-19 Show GitHub Exploit DB Packet Storm
258270 4.3 警告 Nagios Enterprises, LLC
The Icinga Project
- Nagios および Icinga におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2179 2011-07-27 10:25 2011-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
245971 8.8 HIGH
Network
helpy.io helpy Helpy before 2.2.0 allows agents to edit admins. NVD-CWE-noinfo
CVE-2018-20851 2024-11-21 13:02 2019-07-10 Show GitHub Exploit DB Packet Storm
245972 8.2 HIGH
Local
stormshield stormshield_network_security Stormshield Network Security 2.0.0 through 2.13.0 and 3.0.0 through 3.7.1 has self-XSS in the command line interface of the SNS web server. CWE-79
Cross-site Scripting
CVE-2018-20850 2024-11-21 13:02 2019-07-4 Show GitHub Exploit DB Packet Storm
245973 6.1 MEDIUM
Network
arastta ecommerce Arastta eCommerce 1.6.2 is vulnerable to XSS via the PATH_INFO to the login/ URI. CWE-79
Cross-site Scripting
CVE-2018-20849 2024-11-21 13:02 2019-07-1 Show GitHub Exploit DB Packet Storm
245974 8.8 HIGH
Network
peel peel_shopping Advisto PEEL SHOPPING 9.0.0 has CSRF via en/achat/caddie_ajout.php and en/achat/caddie_affichage.php, as demonstrated by an XSS payload in the couleurId[0] parameter to the latter. CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2018-20848 2024-11-21 13:02 2019-07-1 Show GitHub Exploit DB Packet Storm
245975 6.1 MEDIUM
Network
pulsesecure
ivanti
pulse_policy_secure
connect_secure
An XSS issue was found with Psaldownload.cgi in Pulse Secure Pulse Connect Secure (PCS) 8.3R2 before 8.3R2 and Pulse Policy Secure (PPS) 5.4RX before 5.4R2. This is not applicable to PCS 8.1RX or PPS… CWE-79
Cross-site Scripting
CVE-2018-20814 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm
245976 9.8 CRITICAL
Network
ivanti connect_secure An input validation issue has been found with login_meeting.cgi in Pulse Secure Pulse Connect Secure 8.3RX before 8.3R2. CWE-20
 Improper Input Validation 
CVE-2018-20813 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm
245977 7.5 HIGH
Network
pulsesecure pulse_secure_desktop_client An information exposure issue where IPv6 DNS traffic would be sent outside of the VPN tunnel (when Traffic Enforcement was enabled) exists in Pulse Secure Pulse Secure Desktop 9.0R1 and below. This i… CWE-200
Information Exposure
CVE-2018-20812 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm
245978 5.3 MEDIUM
Network
ivanti connect_secure A hidden RPC service issue was found with Pulse Secure Pulse Connect Secure 8.3RX before 8.3R2 and 8.1RX before 8.1R12. CWE-200
Information Exposure
CVE-2018-20811 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm
245979 9.8 CRITICAL
Network
pulsesecure
ivanti
pulse_policy_secure
connect_secure
Session data between cluster nodes during cluster synchronization is not properly encrypted in Pulse Secure Pulse Connect Secure (PCS) 8.3RX before 8.3R2 and Pulse Policy Secure (PPS) 5.4RX before 5.… CWE-326
Inadequate Encryption Strength
CVE-2018-20810 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm
245980 7.5 HIGH
Network
pulsesecure
ivanti
pulse_policy_secure
connect_secure
A crafted message can cause the web server to crash with Pulse Secure Pulse Connect Secure (PCS) 8.3RX before 8.3R5 and Pulse Policy Secure 5.4RX before 5.4R5. This is not applicable to PCS 8.1RX. CWE-20
 Improper Input Validation 
CVE-2018-20809 2024-11-21 13:02 2019-06-29 Show GitHub Exploit DB Packet Storm