Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227541 4.3 警告 Sawmill - Sawmill におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1079 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227542 7.5 危険 sphere.xlentprojects - XlentProjects SphereCMSSpey の archive.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1078 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227543 6.8 警告 VBSEO - vBulletin 用の Crawlability vBSEO プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1077 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227544 4.3 警告 sniggabo - Sniggabo CMS の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1072 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227545 7.5 危険 phpmdj - phpMDJ の profil.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1071 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227546 7.5 危険 proarcadescript - ProArcadeScript の games/game.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1069 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227547 5 警告 the-ghost - AWCM におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1066 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227548 6.8 警告 PHP工房 - Phpkobo Free Real Estate Contact Form におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1063 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227549 6.8 警告 PHP工房 - Phpkobo Free Real Estate Contact Form の codelib/sys/common.inc.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1062 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
227550 6.8 警告 PHP工房 - Phpkobo Short URL におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1061 2012-12-20 19:29 2010-03-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195491 9.8 CRITICAL
Network
dell x1008p_firmware
x1018p_firmware
x1026p_firmware
x1052p_firmware
x4012_firmware
r1-2401_firmware
r1-2210_firmware
x1008_firmware
x1018_firmware
x1026_firmware
x1052_firmw…
Dell EMC Networking X-Series firmware versions prior to 3.0.1.8 and Dell EMC PowerEdge VRTX Switch Module firmware versions prior to 2.0.0.82 contain a Weak Password Encryption Vulnerability. A remot… CWE-326
Inadequate Encryption Strength
CVE-2021-21507 2024-11-21 14:48 2021-05-1 Show GitHub Exploit DB Packet Storm
195492 5.5 MEDIUM
Local
dell hybrid_client Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to view and exfiltrate sensitive infor… CWE-200
Information Exposure
CVE-2021-21537 2024-11-21 14:48 2021-05-1 Show GitHub Exploit DB Packet Storm
195493 5.5 MEDIUM
Local
dell hybrid_client Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to register the client to a server in … CWE-200
Information Exposure
CVE-2021-21536 2024-11-21 14:48 2021-05-1 Show GitHub Exploit DB Packet Storm
195494 7.8 HIGH
Local
dell hybrid_client Dell Hybrid Client versions prior to 1.5 contain a missing authentication for a critical function vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to gain root … CWE-306
Missing Authentication for Critical Function
CVE-2021-21535 2024-11-21 14:48 2021-05-1 Show GitHub Exploit DB Packet Storm
195495 3.3 LOW
Local
dell hybrid_client Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to gain access to sensitive informatio… CWE-200
Information Exposure
CVE-2021-21534 2024-11-21 14:48 2021-05-1 Show GitHub Exploit DB Packet Storm
195496 9.8 CRITICAL
Network
systeminformation systeminformation systeminformation is an open source system and OS information library for node.js. A command injection vulnerability has been discovered in versions of systeminformation prior to 5.6.4. The issue has… CWE-78
OS Command 
CVE-2021-21388 2024-11-21 14:48 2021-04-30 Show GitHub Exploit DB Packet Storm
195497 5.5 MEDIUM
Local
fluidsynth
debian
fluidsynth
debian_linux
fluidsynth is a software synthesizer based on the SoundFont 2 specifications. A use after free violation was discovered in fluidsynth, that can be triggered when loading an invalid SoundFont file. CWE-416
 Use After Free
CVE-2021-21417 2024-11-21 14:48 2021-04-30 Show GitHub Exploit DB Packet Storm
195498 7.8 HIGH
Local
prisma language-tools Prisma VS Code a VSCode extension for Prisma schema files. This is a Remote Code Execution Vulnerability that affects all versions of the Prisma VS Code extension older than 2.20.0. If a custom binar… NVD-CWE-Other
CVE-2021-21415 2024-11-21 14:48 2021-04-30 Show GitHub Exploit DB Packet Storm
195499 7.2 HIGH
Network
prisma prisma Prisma is an open source ORM for Node.js & TypeScript. As of today, we are not aware of any Prisma users or external consumers of the `@prisma/sdk` package who are affected by this security vulnerabi… - CVE-2021-21414 2024-11-21 14:48 2021-04-29 Show GitHub Exploit DB Packet Storm
195500 6.5 MEDIUM
Network
ckeditor ckeditor5-widget
ckeditor5-paste-from-office
ckeditor5-media-embed
ckeditor5-markdown-gfm
ckeditor5-list
ckeditor5-image
ckeditor5-font
ckeditor5-engine
CKEditor 5 provides a WYSIWYG editing solution. This CVE affects the following npm packages: ckeditor5-engine, ckeditor5-font, ckeditor5-image, ckeditor5-list, ckeditor5-markdown-gfm, ckeditor5-media… - CVE-2021-21391 2024-11-21 14:48 2021-04-29 Show GitHub Exploit DB Packet Storm