Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 12:22 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225001 7.5 危険 Open Web Analytics - Open Web Analytics のパスワードリセットのページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1206 2014-01-20 10:16 2014-01-9 Show GitHub Exploit DB Packet Storm
225002 10 危険 LOREX Technology - 複数の Lorex Edge 製品のファームウェアの INetViewX ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1201 2014-01-20 10:16 2014-01-9 Show GitHub Exploit DB Packet Storm
225003 7.5 危険 WellinTech - 複数の WellinTech 製品の ActiveX コントロールにおける任意の DLL コードをダウンロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2013-2827 2014-01-20 10:15 2014-01-14 Show GitHub Exploit DB Packet Storm
225004 6.4 警告 WellinTech - 複数の WellinTech 製品におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2826 2014-01-20 10:14 2014-01-14 Show GitHub Exploit DB Packet Storm
225005 3.5 注意 VASCO - VASCO IDENTIKEY Authentication Server に認証不備の脆弱性 CWE-287
CWE-Other
CVE-2013-7292 2014-01-17 18:20 2014-01-9 Show GitHub Exploit DB Packet Storm
225006 7.2 危険 サン・マイクロシステムズ
オラクル
- Sun Solaris の dbm_open() および dbminit() 関数におけるバッファオーバーフローの脆弱性 - CVE-2003-1067 2014-01-17 18:10 2003-06-19 Show GitHub Exploit DB Packet Storm
225007 9.3 危険 オラクル - Oracle Java SE における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0408 2014-01-17 17:17 2014-01-14 Show GitHub Exploit DB Packet Storm
225008 9.3 危険 オラクル - Oracle Java SE における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0385 2014-01-17 17:17 2014-01-14 Show GitHub Exploit DB Packet Storm
225009 6.8 警告 オラクル - Oracle MySQL の MySQL Server における GIS に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5860 2014-01-17 17:14 2014-01-14 Show GitHub Exploit DB Packet Storm
225010 6.8 警告 オラクル - Oracle MySQL の MySQL Server における Stored Procedure に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5882 2014-01-17 17:14 2014-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201011 5.6 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) do not adequately invalidate user sessions. Successful exploitation of this issue could lead to unauthorized acces… - CVE-2021-21032 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201012 5.6 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) do not adequately invalidate user sessions. Successful exploitation could lead to unauthorized access to restricte… - CVE-2021-21031 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201013 8.1 HIGH
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to a stored cross-site scripting (XSS) in the customer address upload feature. Successful exploitat… - CVE-2021-21030 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201014 4.8 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are affected by a Reflected Cross-site Scripting vulnerability via 'file' parameter. Successful exploitation could… - CVE-2021-21029 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201015 8.8 HIGH
Network
adobe acrobat
acrobat_dc
acrobat_reader
acrobat_reader_dc
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated atta… - CVE-2021-21028 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201016 4.3 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are affected by a cross-site request forgery (CSRF) vulnerability via the GraphQL API. Successful exploitation cou… - CVE-2021-21027 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201017 5.3 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are affected by an improper authorization vulnerability in the integrations module. Successful exploitation could … NVD-CWE-Other
CVE-2021-21026 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201018 9.1 CRITICAL
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to XML injection in the product layout updates. Successful exploitation could lead to arbitrary cod… - CVE-2021-21025 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201019 9.1 CRITICAL
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are affected by a blind SQL injection vulnerability in the Search module. Successful exploitation could lead to un… - CVE-2021-21024 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm
201020 4.8 MEDIUM
Network
magento magento Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to a stored cross-site scripting vulnerability in the admin console. Successful exploitation could … CWE-79
Cross-site Scripting
CVE-2021-21023 2024-11-21 14:47 2021-02-12 Show GitHub Exploit DB Packet Storm