Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224111 7.5 危険 Josh Fradley - Burden の login.php の "remember me" 機能における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-7137 2014-01-28 16:19 2013-12-18 Show GitHub Exploit DB Packet Storm
224112 4.3 警告 ヤフー株式会社 - FireFox 用 Yahoo! Toolbar プラグインの clickstream.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6853 2014-01-28 16:15 2014-01-14 Show GitHub Exploit DB Packet Storm
224113 3.6 注意 Secunia - Secunia CSI Agent における設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5364 2014-01-28 16:13 2014-01-10 Show GitHub Exploit DB Packet Storm
224114 6.8 警告 マイクロソフト - Android 用 Microsoft Bing アプリケーションにおける任意の APK ファイルをインストールされる脆弱性 CWE-94
コード・インジェクション
CVE-2014-1670 2014-01-28 15:48 2014-01-21 Show GitHub Exploit DB Packet Storm
224115 9.3 危険 SmartBear Software - SoapUI の WSDL/WADL インポート機能における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1202 2014-01-28 15:38 2014-01-14 Show GitHub Exploit DB Packet Storm
224116 4.3 警告 レッドハット - libvirt における ACL の domain:getattr および connect:search_domains の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0028 2014-01-28 10:57 2014-01-16 Show GitHub Exploit DB Packet Storm
224117 4 警告 Drupal - Drupal の Taxonomy モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1476 2014-01-28 10:11 2014-01-15 Show GitHub Exploit DB Packet Storm
224118 7.5 危険 Drupal - Drupal の OpenID モジュールにおける他のユーザとして認証される脆弱性 CWE-noinfo
情報不足
CVE-2014-1475 2014-01-28 10:11 2014-01-15 Show GitHub Exploit DB Packet Storm
224119 7.5 危険 live555 - VideoLAN VLC media player で使用される Live Networks Live555 Streaming Media におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
CWE-189
CVE-2013-6934 2014-01-27 18:54 2013-12-30 Show GitHub Exploit DB Packet Storm
224120 7.5 危険 live555 - VideoLAN VLC media player で使用される Live Networks Live555 Streaming Media におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
CWE-189
CVE-2013-6933 2014-01-27 18:53 2013-12-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200031 7.1 HIGH
Local
huawei harmonyos A component of the HarmonyOS has a Privilege Dropping / Lowering Errors vulnerability. Local attackers may exploit this vulnerability to obtain Kernel space read/write capability. CWE-269
 Improper Privilege Management
CVE-2021-22326 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200032 5.3 MEDIUM
Network
huawei ecns280_firmware There is an XXE injection vulnerability in eCNS280 V100R005C00 and V100R005C10. A module does not perform the strict operation to the input XML message. Attacker can send specific message to exploit … CWE-611
XXE
CVE-2021-22338 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200033 4.9 MEDIUM
Network
huawei ips_module_firmware
ngfw_module_firmware
nip6300_firmware
nip6600_firmware
secospace_usg6300_firmware
secospace_usg6500_firmware
secospace_usg6600_firmware
There is a memory leak vulnerability in Huawei products. A resource management weakness exists in a module. Attackers with high privilege can exploit this vulnerability by performing some operations.… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2021-22341 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200034 4.9 MEDIUM
Network
huawei s12700_firmware
s1700_firmware
s2700_firmware
s5700_firmware
s6700_firmware
s7700_firmware
s9700_firmware
There has a license management vulnerability in some Huawei products. An attacker with high privilege needs to perform specific operations to exploit the vulnerability on the affected device. Due to … NVD-CWE-noinfo
CVE-2021-22329 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200035 7.8 HIGH
Local
poweriso poweriso A memory corruption vulnerability exists in the DMG File Format Handler functionality of PowerISO 7.9. A specially crafted DMG file can lead to an out-of-bounds write. An attacker can provide a malic… CWE-787
 Out-of-bounds Write
CVE-2021-21871 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200036 4.1 MEDIUM
Local
huawei manageone
smc2.0
There is a multiple threads race condition vulnerability in Huawei product. A race condition exists for concurrent I/O read by multiple threads. An attacker with the root permission can exploit this … CWE-362
Race Condition
CVE-2021-22340 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200037 7.5 HIGH
Network
vmware
oracle
spring_security
communications_cloud_native_core_policy
Spring Security versions 5.5.x prior to 5.5.1, 5.4.x prior to 5.4.7, 5.3.x prior to 5.3.10 and 5.2.x prior to 5.2.11 are susceptible to a Denial-of-Service (DoS) attack via the initiation of the Auth… CWE-863
 Incorrect Authorization
CVE-2021-22119 2024-11-21 14:49 2021-06-30 Show GitHub Exploit DB Packet Storm
200038 9.1 CRITICAL
Network
moodle moodle A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have adm… CWE-78
OS Command 
CVE-2021-21809 2024-11-21 14:49 2021-06-24 Show GitHub Exploit DB Packet Storm
200039 7.8 HIGH
Local
vmware remote_console
app_volumes
tools
VMware Tools for Windows (11.x.y prior to 11.2.6), VMware Remote Console for Windows (12.x prior to 12.0.1) , VMware App Volumes (2.x prior to 2.18.10 and 4 prior to 2103) contain a local privilege e… CWE-427
 Uncontrolled Search Path Element
CVE-2021-21999 2024-11-21 14:49 2021-06-23 Show GitHub Exploit DB Packet Storm
200040 9.8 CRITICAL
Network
vmware carbon_black_app_control VMware Carbon Black App Control 8.0, 8.1, 8.5 prior to 8.5.8, and 8.6 prior to 8.6.2 has an authentication bypass. A malicious actor with network access to the VMware Carbon Black App Control managem… CWE-287
Improper Authentication
CVE-2021-21998 2024-11-21 14:49 2021-06-23 Show GitHub Exploit DB Packet Storm