Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225801 2.6 注意 アドビシステムズ - Adobe Reader X における Sandbox 機能が回避される脆弱性 CWE-Other
その他
- 2013-05-31 12:04 2013-05-31 Show GitHub Exploit DB Packet Storm
225802 2.6 注意 アップル - Safari における情報漏えいの脆弱性 CWE-Other
その他
- 2013-05-31 12:03 2013-05-31 Show GitHub Exploit DB Packet Storm
225803 7.2 危険 Google
LG Electronics
- LG Optimus G E973 上の Android 用 LG Hidden Menu における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3666 2013-05-30 16:39 2013-05-23 Show GitHub Exploit DB Packet Storm
225804 6.8 警告 IBM - UNIX 用の IBM Sterling Connect:Direct におけるファイルシステムの読み取り権限および書き込み権限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2989 2013-05-30 16:37 2013-05-14 Show GitHub Exploit DB Packet Storm
225805 4.3 警告 IBM - IBM Tivoli Monitoring の Tivoli Enterprise Portal browser クライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0576 2013-05-30 16:36 2013-05-17 Show GitHub Exploit DB Packet Storm
225806 4.3 警告 IBM - IBM WebSphere DataPower SOA アプライアンスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0499 2013-05-30 16:34 2013-05-17 Show GitHub Exploit DB Packet Storm
225807 7.2 危険 レッドハット - Red Hat livecd-tools における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2069 2013-05-30 14:07 2013-05-23 Show GitHub Exploit DB Packet Storm
225808 4.9 警告 マイクロソフト - Microsoft Windows の win32k.sys の EPATHOBJ::bFlatten 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3661 2013-05-29 16:54 2013-05-17 Show GitHub Exploit DB Packet Storm
225809 5 警告 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-2959 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
225810 3.5 注意 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2957 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196421 4.3 MEDIUM
Network
jenkins p4 Jenkins P4 Plugin 1.11.4 and earlier does not perform permission checks in multiple HTTP endpoints, allowing attackers with Overall/Read permission to connect to an attacker-specified Perforce server… - CVE-2021-21654 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196422 4.3 MEDIUM
Network
jenkins xray_-_test_management_for_jira Jenkins Xray - Test Management for Jira Plugin 2.4.0 and earlier does not perform a permission check in an HTTP endpoint, allowing with Overall/Read permission to enumerate credentials IDs of credent… - CVE-2021-21653 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196423 7.1 HIGH
Network
jenkins xray_-_test_management_for_jira A cross-site request forgery (CSRF) vulnerability in Jenkins Xray - Test Management for Jira Plugin 2.4.0 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified… CWE-352
 Origin Validation Error
CVE-2021-21652 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196424 4.3 MEDIUM
Network
jenkins s3_publisher Jenkins S3 publisher Plugin 0.11.6 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to obtain the list of configured profiles. - CVE-2021-21651 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196425 4.3 MEDIUM
Network
jenkins s3_publisher Jenkins S3 publisher Plugin 0.11.6 and earlier does not perform Run/Artifacts permission checks in various HTTP endpoints and API models, allowing attackers with Item/Read permission to obtain inform… - CVE-2021-21650 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196426 5.4 MEDIUM
Network
jenkins dashboard_view Jenkins Dashboard View Plugin 2.15 and earlier does not escape URLs referenced in Image Dashboard Portlets, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers wit… CWE-79
Cross-site Scripting
CVE-2021-21649 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196427 6.1 MEDIUM
Network
jenkins credentials Jenkins Credentials Plugin 2.3.18 and earlier does not escape user-controlled information on a view it provides, resulting in a reflected cross-site scripting (XSS) vulnerability. CWE-79
Cross-site Scripting
CVE-2021-21648 2024-11-21 14:48 2021-05-12 Show GitHub Exploit DB Packet Storm
196428 5.5 MEDIUM
Local
openapi-generator openapi_generator OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. Using `File.createTempFile` in JDK wil… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-21430 2024-11-21 14:48 2021-05-11 Show GitHub Exploit DB Packet Storm
196429 7.0 HIGH
Local
openapi-generator openapi_generator Openapi generator is a java tool which allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. openapi-generator… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-21428 2024-11-21 14:48 2021-05-11 Show GitHub Exploit DB Packet Storm
196430 5.3 MEDIUM
Network
eventlet
fedoraproject
eventlet
fedora
Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending very large websocket frames. Malicious peer may exhaust memory on Eventlet side… - CVE-2021-21419 2024-11-21 14:48 2021-05-8 Show GitHub Exploit DB Packet Storm