Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226741 3.5 注意 IBM - IBM TADDM の Data Management Portal Web User Interface におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5939 2013-03-7 19:13 2013-03-1 Show GitHub Exploit DB Packet Storm
226742 5.8 警告 IBM - IBM TADDM の SSL 設定におけるサーバを偽装される脆弱性 CWE-16
環境設定
CVE-2012-5770 2013-03-7 19:12 2013-03-1 Show GitHub Exploit DB Packet Storm
226743 4.3 警告 IBM - IBM WebSphere Commerce におけるサービス運用妨害 (ログイン停止) の脆弱性 CWE-noinfo
情報不足
CVE-2012-4855 2013-03-7 19:09 2012-10-25 Show GitHub Exploit DB Packet Storm
226744 5 警告 thekelleys - Dnsmasq におけるサービス運用妨害 (トラフィック増幅) の脆弱性 CWE-noinfo
情報不足
CVE-2012-3411 2013-03-7 19:00 2013-03-5 Show GitHub Exploit DB Packet Storm
226745 6.9 警告 GNU Project - GNU Project Debugger における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4355 2013-03-7 18:58 2013-03-5 Show GitHub Exploit DB Packet Storm
226746 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の DirectShow における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-0077 2013-03-7 17:55 2013-02-12 Show GitHub Exploit DB Packet Storm
226747 7.8 危険 マイクロソフト - 複数の Microsoft Windows 製品の TCP/IP の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-0075 2013-03-7 17:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226748 7.5 危険 Google - Google Chrome におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0911 2013-03-7 16:10 2013-03-4 Show GitHub Exploit DB Packet Storm
226749 7.5 危険 Google - Google Chrome におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-0910 2013-03-7 16:09 2013-03-4 Show GitHub Exploit DB Packet Storm
226750 5 警告 Google - Google Chrome の XSS Auditor における重要な HTTP リファラ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0909 2013-03-7 16:09 2013-03-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195671 7.5 HIGH
Network
schneider-electric powerlogic_ion7400_firmware
powerlogic_ion7650_firmware
powerlogic_ion8600_firmware
powerlogic_ion8650_firmware
powerlogic_ion8800_firmware
powerlogic_ion9000_firmware
powerlogic_pm…
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affec… - CVE-2021-22703 2024-11-21 14:50 2021-02-20 Show GitHub Exploit DB Packet Storm
195672 7.5 HIGH
Network
schneider-electric powerlogic_ion7400_firmware
powerlogic_ion7650_firmware
powerlogic_ion7700_firmware
powerlogic_ion7300_firmware
powerlogic_ion8600_firmware
powerlogic_ion8650_firmware
powerlogic_io…
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notifica… - CVE-2021-22702 2024-11-21 14:50 2021-02-20 Show GitHub Exploit DB Packet Storm
195673 4.5 MEDIUM
Network
schneider-electric powerlogic_ion7400_firmware
powerlogic_ion7650_firmware
powerlogic_ion8600_firmware
powerlogic_ion8650_firmware
powerlogic_ion8800_firmware
powerlogic_ion9000_firmware
powerlogic_pm…
A CWE-352: Cross-Site Request Forgery vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that c… - CVE-2021-22701 2024-11-21 14:50 2021-02-20 Show GitHub Exploit DB Packet Storm
195674 9.8 CRITICAL
Network
hr_portal_project hr_portal The specific function of HR Portal of Soar Cloud System accepts any type of object to be deserialized. Attackers can send malicious serialized objects to execute arbitrary commands. CWE-502
 Deserialization of Untrusted Data
CVE-2021-22855 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195675 7.5 HIGH
Network
hr_portal_project hr_portal The HR Portal of Soar Cloud System fails to filter specific parameters. Remote attackers can inject SQL syntax and obtain all data in the database without privilege. CWE-89
SQL Injection
CVE-2021-22854 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195676 5.4 MEDIUM
Network
hr_portal_project hr_portal The HR Portal of Soar Cloud System fails to manage access control. While obtaining user ID, remote attackers can access sensitive data via a specific data packet, such as user’s login information, fu… NVD-CWE-Other
CVE-2021-22853 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195677 7.5 HIGH
Network
google gerrit Any git operation is passed through Jetty and a session is created. No expiry is set for the session and Jetty does not automatically dispose of the session. Over multiple git actions, this can lead … CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2021-22553 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195678 8.8 HIGH
Network
changjia_property_management_system_project changjia_property_management_system Attackers can access the CGE account management function without privilege for permission elevation and execute arbitrary commands or files after obtaining user permissions. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-22858 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195679 7.5 HIGH
Network
changjia_property_management_system_project changjia_property_management_system The CGE page with download function contains a Directory Traversal vulnerability. Attackers can use this loophole to download system files arbitrarily. CWE-22
Path Traversal
CVE-2021-22857 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm
195680 7.5 HIGH
Network
changjia_property_management_system_project changjia_property_management_system The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege. CWE-89
SQL Injection
CVE-2021-22856 2024-11-21 14:50 2021-02-17 Show GitHub Exploit DB Packet Storm