Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226281 7.5 危険 John Nunemaker - Ruby 用 httparty gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1801 2013-04-11 19:41 2013-01-14 Show GitHub Exploit DB Packet Storm
226282 7.5 危険 John Nunemaker - Ruby 用 crack gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1800 2013-04-11 19:40 2013-01-14 Show GitHub Exploit DB Packet Storm
226283 7.5 危険 Daniel Harrington - Ruby 用 nori gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0285 2013-04-11 19:39 2013-01-14 Show GitHub Exploit DB Packet Storm
226284 5 警告 New Relic - Ruby Agent における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0284 2013-04-11 19:38 2013-02-13 Show GitHub Exploit DB Packet Storm
226285 6.8 警告 Michael Bleigh and Intridea, Inc. - Ruby 用 omniauth-oauth2 gem におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6134 2013-04-11 19:37 2013-02-25 Show GitHub Exploit DB Packet Storm
226286 5.8 警告 Apache Software Foundation - Apache Maven のデフォルト設定におけるサーバになりすまされる脆弱性 CWE-16
環境設定
CVE-2013-0253 2013-04-11 17:36 2013-04-2 Show GitHub Exploit DB Packet Storm
226287 4.3 警告 fedorahosted.org - cronie におけるファイル記述子が漏えいする脆弱性 CWE-200
情報漏えい
CVE-2012-6097 2013-04-11 17:35 2013-01-9 Show GitHub Exploit DB Packet Storm
226288 2.1 注意 Gluster, Inc.
レッドハット
- Red Hat Storage の GlusterFS 機能における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5635 2013-04-11 17:35 2013-03-28 Show GitHub Exploit DB Packet Storm
226289 4 警告 OpenStack
Canonical
- 複数の OpenStack 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1838 2013-04-11 14:57 2013-03-15 Show GitHub Exploit DB Packet Storm
226290 4.3 警告 フェンリル株式会社 - Sleipnir for Windows におけるアドレスバー偽装の脆弱性 CWE-noinfo
情報不足
CVE-2013-2303 2013-04-11 12:01 2013-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195791 7.8 HIGH
Local
vmware esxi
cloud_foundation
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to ac… CWE-863
 Incorrect Authorization
CVE-2021-22042 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195792 6.7 MEDIUM
Local
vmware fusion
esxi
cloud_foundation
workstation
VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issu… NVD-CWE-noinfo
CVE-2021-22041 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195793 6.7 MEDIUM
Local
vmware esxi
fusion
workstation_player
cloud_foundation
workstation_pro
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this is… CWE-416
 Use After Free
CVE-2021-22040 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195794 5.3 MEDIUM
Network
ti simplelink_cc32xx_software_development_kit
cc3100_firmware
cc3200_firmware
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an… CWE-908
 Use of Uninitialized Resource
CVE-2021-21966 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195795 7.8 HIGH
Local
hancom hancom_office_2020 A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and poten… CWE-787
 Out-of-bounds Write
CVE-2021-21958 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195796 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22288 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195797 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22286 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195798 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module that allows an attacker to cause the denial of se… CWE-754
CWE-755
 Improper Check for Unusual or Exceptional Conditions
 Improper Handling of Exceptional Conditions
CVE-2021-22285 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195799 8.8 HIGH
Network
abb opc_server_for_ac_800m Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-22284 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195800 5.9 MEDIUM
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An … CWE-787
 Out-of-bounds Write
CVE-2021-21971 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm