Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133011 7.5 重要
Network
jQueryValidation
NetApp
SnapCenter
jQuery Validation
jQuery Validation プラグインにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2021-21252 2021-09-22 18:11 2021-01-10 Show GitHub Exploit DB Packet Storm
133012 7.2 重要
Network
coturn project coturn Coturn における計算の誤りに関する脆弱性 CWE-441
CWE-682
CVE-2020-26262 2021-09-22 18:11 2020-10-1 Show GitHub Exploit DB Packet Storm
133013 9.8 緊急
Network
ctolog ThinkAdmin ThinkAdmin における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2020-23653 2021-09-22 18:11 2020-01-2 Show GitHub Exploit DB Packet Storm
133014 7.1 重要
Network
Gin Team Gin gin における HTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2020-28483 2021-09-22 17:54 2020-11-19 Show GitHub Exploit DB Packet Storm
133015 8.8 重要
Network
softwaremill akka-http-session akka-http-session におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2020-28452 2021-09-22 17:54 2020-11-25 Show GitHub Exploit DB Packet Storm
133016 5.3 警告
Network
シスコシステムズ
Snort.org
Snort
Cisco FirePOWER Management Center
Cisco Firepower Threat Defense ソフトウェア
Cisco IOS XE
複数の Cisco 製品における常に不適切な制御フローの実装に関する脆弱性 CWE-670
常に不適切な制御フローの実装
CVE-2021-1236 2021-09-22 17:52 2021-01-13 Show GitHub Exploit DB Packet Storm
133017 6.5 警告
Network
シスコシステムズ Cisco Unified Communications Manager IM and Presence Service
Cisco Emergency Responder ソフトウェア
Cisco Unified Communications Manag…
複数の Cisco 製品におけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2021-1226 2021-09-22 17:52 2021-01-13 Show GitHub Exploit DB Packet Storm
133018 7.8 重要
Local
シスコシステムズ Cisco AnyConnect Secure Mobility Client Windows 用 Cisco AnyConnect Secure Mobility Client における制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2021-1237 2021-09-22 17:52 2021-01-13 Show GitHub Exploit DB Packet Storm
133019 5.3 警告
Network
シスコシステムズ
Snort.org
Cisco-Meraki  MX68 ファームウェア
Cisco-Meraki MX64W ファームウェア
Cisco-Meraki MX64 ファームウェア
Cisco IOS XE
Cisco-Meraki MX67 ファームウェア
Cisco …
複数の Cisco 製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-1224 2021-09-22 17:52 2021-01-13 Show GitHub Exploit DB Packet Storm
133020 7.5 重要
Network
シスコシステムズ
Snort.org
Snort
Cisco FirePOWER Management Center
Cisco Firepower Threat Defense ソフトウェア
Cisco IOS XE
複数の Cisco 製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-1223 2021-09-22 17:52 2021-01-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307031 - x.org x.org The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via (1) a crafted request that triggers a cl… CWE-20
 Improper Input Validation 
CVE-2010-4818 2024-11-21 10:21 2012-09-6 Show GitHub Exploit DB Packet Storm
307032 - linux linux_kernel Buffer overflow in the fuse_do_ioctl function in fs/fuse/file.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service or possibly have unspecified other impact by leveragi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-4650 2024-11-21 10:21 2012-06-22 Show GitHub Exploit DB Packet Storm
307033 - linux linux_kernel The orinoco_ioctl_set_auth function in drivers/net/wireless/orinoco/wext.c in the Linux kernel before 2.6.37 does not properly implement a TKIP protection mechanism, which makes it easier for remote … NVD-CWE-noinfo
CVE-2010-4648 2024-11-21 10:21 2012-06-22 Show GitHub Exploit DB Packet Storm
307034 - freebsd libarchive Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CAB file, which is … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-4666 2024-11-21 10:21 2012-04-14 Show GitHub Exploit DB Packet Storm
307035 - linux linux_kernel The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo… CWE-200
Information Exposure
CVE-2010-4563 2024-11-21 10:21 2012-02-3 Show GitHub Exploit DB Packet Storm
307036 - microsoft windows_2000
windows_server_2008
windows_vista
windows_7
windows_2003_server
windows_xp
Microsoft Windows 2008, 7, Vista, 2003, 2000, and XP, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast add… CWE-200
Information Exposure
CVE-2010-4562 2024-11-21 10:21 2012-02-3 Show GitHub Exploit DB Packet Storm
307037 - marco_hezel hm_tinymarket SQL injection vulnerability in the Tiny Market (hm_tinymarket) extension 0.5.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2010-4888 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
307038 - raphael_zschorsch commentsbe SQL injection vulnerability in the Commenting system Backend Module (commentsbe) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vector… CWE-89
SQL Injection
CVE-2010-4887 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
307039 - peter_proell tweetbutton Cross-site scripting (XSS) vulnerability in the "official twitter tweet button for your page" (tweetbutton) extension before 1.0.5 for TYPO3 allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2010-4886 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
307040 - peter_proell xing Cross-site scripting (XSS) vulnerability in the XING Button (xing) extension before 1.0.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2010-4885 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm