Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225611 5 警告 IBM - IBM Data Studio の Web コンソールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2981 2013-06-18 15:45 2013-06-14 Show GitHub Exploit DB Packet Storm
225612 6.8 警告 IBM - IBM Data Studio の Web コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2980 2013-06-18 15:44 2013-06-14 Show GitHub Exploit DB Packet Storm
225613 7.1 危険 IOServer - IOServer の DNP3 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2783 2013-06-18 12:38 2013-06-10 Show GitHub Exploit DB Packet Storm
225614 7.5 危険 シーメンス - SIMATIC PCS 7 で使用される Siemens WinCC の Web Navigator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3957 2013-06-18 11:16 2013-06-14 Show GitHub Exploit DB Packet Storm
225615 10 危険 オラクル - Oracle Java SE の Java Runtime Environment におけるセキュリティ・レベルを回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-1489 2013-06-17 17:01 2013-02-1 Show GitHub Exploit DB Packet Storm
225616 5 警告 ヒューレット・パッカード - HP Insight Diagnostics の hpdiags/frontend2/help/pageview.php における任意の HTML ファイルをインクルードされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-3575 2013-06-17 14:25 2013-06-10 Show GitHub Exploit DB Packet Storm
225617 7.8 危険 ヒューレット・パッカード - HP Insight Diagnostics の hpdiags/frontend2/commands/saveCompareConfig.php における絶対パストラバーサルの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3574 2013-06-17 14:23 2013-06-10 Show GitHub Exploit DB Packet Storm
225618 10 危険 ヒューレット・パッカード - HP Insight Diagnostics における不特定のインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3573 2013-06-17 14:22 2013-06-10 Show GitHub Exploit DB Packet Storm
225619 4.3 警告 シスコシステムズ - Cisco Video Surveillance Operations Manager におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3376 2013-06-17 14:22 2013-06-14 Show GitHub Exploit DB Packet Storm
225620 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3375 2013-06-17 14:21 2013-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196671 9.8 CRITICAL
Network
dell storage_resource_manager
storage_monitoring_and_reporting
Dell SRM versions prior to 4.5.0.1 and Dell SMR versions prior to 4.5.0.1 contain an Untrusted Deserialization Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerabil… CWE-502
 Deserialization of Untrusted Data
CVE-2021-21524 2024-11-21 14:48 2021-04-13 Show GitHub Exploit DB Packet Storm
196672 6.5 MEDIUM
Network
matrix
fedoraproject
synapse
fedora
Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synaps… CWE-20
 Improper Input Validation 
CVE-2021-21394 2024-11-21 14:48 2021-04-13 Show GitHub Exploit DB Packet Storm
196673 5.3 MEDIUM
Network
zte zxa10_c300m_firmware A ZTE product has a configuration error vulnerability. Because a certain port is open by default, an attacker can consume system processing resources by flushing a large number of packets to the port… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-21728 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
196674 8.8 HIGH
Network
demon1a discord-recon Discord Recon Server is a bot that allows you to do your reconnaissance process from your Discord. Remote code execution in version 0.0.1 would allow remote users to execute commands on the server re… CWE-78
OS Command 
CVE-2021-21433 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
196675 6.5 MEDIUM
Network
go-vela vela Vela is a Pipeline Automation (CI/CD) framework built on Linux container technology written in Golang. An authentication mechanism added in version 0.7.0 enables some malicious user to obtain secrets… CWE-862
 Missing Authorization
CVE-2021-21432 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
196676 8.1 HIGH
Network
mirahezebots channelmgnt sopel-channelmgnt is a channelmgnt plugin for sopel. In versions prior to 2.0.1, on some IRC servers, restrictions around the removal of the bot using the kick/kickban command could be bypassed when … NVD-CWE-Other
CVE-2021-21431 2024-11-21 14:48 2021-04-10 Show GitHub Exploit DB Packet Storm
196677 9.8 CRITICAL
Network
getgrav grav-plugin-admin Grav Admin Plugin is an HTML user interface that provides a way to configure Grav and create and modify pages. In versions 1.10.7 and earlier, an unauthenticated user can execute some methods of admi… NVD-CWE-Other
CVE-2021-21425 2024-11-21 14:48 2021-04-8 Show GitHub Exploit DB Packet Storm
196678 4.3 MEDIUM
Network
jenkins promoted_builds A cross-site request forgery (CSRF) vulnerability in Jenkins promoted builds Plugin 3.9 and earlier allows attackers to to promote builds. CWE-352
 Origin Validation Error
CVE-2021-21641 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm
196679 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not properly check that a newly created view has an allowed name, allowing attackers with View/Create permission to create views with invalid o… - CVE-2021-21640 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm
196680 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers wi… - CVE-2021-21639 2024-11-21 14:48 2021-04-7 Show GitHub Exploit DB Packet Storm