Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224741 4.3 警告 Sven Fuchs - Ruby 用 i18n gem の exceptions.rb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4492 2013-12-10 12:38 2013-12-3 Show GitHub Exploit DB Packet Storm
224742 4.3 警告 Ruby on Rails project - Ruby on Rails の actionpack/lib/action_view/helpers/text_helper.rb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6416 2013-12-10 12:29 2013-12-3 Show GitHub Exploit DB Packet Storm
224743 7.2 危険 Novell - SUSE horde5 パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1090 2013-12-9 18:21 2013-12-4 Show GitHub Exploit DB Packet Storm
224744 4.3 警告 The Jamroom Network - Jamroom 用 Search モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6804 2013-12-9 18:08 2013-11-13 Show GitHub Exploit DB Packet Storm
224745 4.3 警告 Ganglia - Ganglia Web の header.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6395 2013-12-9 17:50 2013-11-22 Show GitHub Exploit DB Packet Storm
224746 4.3 警告 Claroline Consortium - Claroline におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6267 2013-12-9 15:54 2013-11-25 Show GitHub Exploit DB Packet Storm
224747 7.5 危険 Dokeos - Dokeos における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-6341 2013-12-9 14:29 2013-11-27 Show GitHub Exploit DB Packet Storm
224748 4.3 警告 RockMongo - RockMongo の xn 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5108 2013-12-9 14:20 2013-08-16 Show GitHub Exploit DB Packet Storm
224749 4.3 警告 シスコシステムズ - Cisco ONS 15454 コントローラカードのソフトウェアの管理の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-6702 2013-12-6 16:38 2013-12-3 Show GitHub Exploit DB Packet Storm
224750 6.8 警告 X.Org Foundation - X.org libXi におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1998 2013-12-6 15:35 2013-05-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199871 6.5 MEDIUM
Network
matrix
fedoraproject
synapse
fedora
Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synaps… CWE-20
 Improper Input Validation 
CVE-2021-21394 2024-11-21 14:48 2021-04-13 Show GitHub Exploit DB Packet Storm
199872 5.3 MEDIUM
Network
zte zxa10_c300m_firmware A ZTE product has a configuration error vulnerability. Because a certain port is open by default, an attacker can consume system processing resources by flushing a large number of packets to the port… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-21728 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
199873 8.8 HIGH
Network
demon1a discord-recon Discord Recon Server is a bot that allows you to do your reconnaissance process from your Discord. Remote code execution in version 0.0.1 would allow remote users to execute commands on the server re… CWE-78
OS Command 
CVE-2021-21433 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
199874 6.5 MEDIUM
Network
go-vela vela Vela is a Pipeline Automation (CI/CD) framework built on Linux container technology written in Golang. An authentication mechanism added in version 0.7.0 enables some malicious user to obtain secrets… CWE-862
 Missing Authorization
CVE-2021-21432 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
199875 8.1 HIGH
Network
mirahezebots channelmgnt sopel-channelmgnt is a channelmgnt plugin for sopel. In versions prior to 2.0.1, on some IRC servers, restrictions around the removal of the bot using the kick/kickban command could be bypassed when … NVD-CWE-Other
CVE-2021-21431 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
199876 9.8 CRITICAL
Network
getgrav grav-plugin-admin Grav Admin Plugin is an HTML user interface that provides a way to configure Grav and create and modify pages. In versions 1.10.7 and earlier, an unauthenticated user can execute some methods of admi… NVD-CWE-Other
CVE-2021-21425 2024-11-21 14:48 2021-04-8 Show GitHub Exploit DB Packet Storm
199877 4.3 MEDIUM
Network
jenkins promoted_builds A cross-site request forgery (CSRF) vulnerability in Jenkins promoted builds Plugin 3.9 and earlier allows attackers to to promote builds. CWE-352
 Origin Validation Error
CVE-2021-21641 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm
199878 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not properly check that a newly created view has an allowed name, allowing attackers with View/Create permission to create views with invalid o… - CVE-2021-21640 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm
199879 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers wi… - CVE-2021-21639 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm
199880 7.5 HIGH
Network
syncthing syncthing Syncthing is a continuous file synchronization program. In Syncthing before version 1.15.0, the relay server `strelaysrv` can be caused to crash and exit by sending a relay message with a negative le… - CVE-2021-21404 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm