Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228001 7.8 危険 シスコシステムズ - Cisco IOS の VRF-aware NAT 機能におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-362
競合状態
CVE-2013-1142 2013-04-23 17:13 2013-03-27 Show GitHub Exploit DB Packet Storm
228002 6.4 警告 Ruby on Rails project - Ruby on Rails の Active Record コンポーネントにおけるデータ型インジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3221 2013-04-23 17:12 2013-04-22 Show GitHub Exploit DB Packet Storm
228003 4.9 警告 Linux - Linux Kernel の net/vmw_vsock/af_vsock.c における重要な情報を取得される脆弱性 CWE-200
CWE-DesignError
CVE-2013-3237 2013-04-23 16:32 2013-04-7 Show GitHub Exploit DB Packet Storm
228004 4.9 警告 Linux - Linux Kernel の net/vmw_vsock/vmci_transport.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3236 2013-04-23 16:32 2013-04-7 Show GitHub Exploit DB Packet Storm
228005 10 危険 日立 - Hitachi IT Operations Director におけるバッファオーバーフローの脆弱性 CWE-noinfo
情報不足
- 2013-04-23 15:12 2013-04-19 Show GitHub Exploit DB Packet Storm
228006 10 危険 Opera Software ASA - Opera における脆弱性 CWE-noinfo
情報不足
CVE-2013-3211 2013-04-23 15:08 2013-04-4 Show GitHub Exploit DB Packet Storm
228007 5 警告 Opera Software ASA - Opera における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3210 2013-04-23 15:07 2013-04-4 Show GitHub Exploit DB Packet Storm
228008 4.9 警告 Puppet
Canonical
- Puppet における任意のカタログを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1652 2013-04-23 13:54 2013-03-12 Show GitHub Exploit DB Packet Storm
228009 6.8 警告 Lester Chan - WordPress 用 WP-DownloadManager プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2697 2013-04-23 12:23 2013-04-5 Show GitHub Exploit DB Packet Storm
228010 4.3 警告 Novell - Novell GroupWise の WebAccess におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1086 2013-04-23 12:14 2013-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194281 5.4 MEDIUM
Network
softing opc_toolbox Softing AG OPC Toolbox through 4.10.1.13035 allows /en/diag_values.html Stored XSS via the ITEMLISTVALUES##ITEMID parameter, resulting in JavaScript payload injection into the trace file. This payloa… CWE-79
Cross-site Scripting
CVE-2021-29661 2024-11-21 15:01 2021-04-3 Show GitHub Exploit DB Packet Storm
194282 8.8 HIGH
Network
softing opc_toolbox A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through 4.10.1.13035 allows attackers to reset the administrative password by inducing the Administra… CWE-352
 Origin Validation Error
CVE-2021-29660 2024-11-21 15:01 2021-04-3 Show GitHub Exploit DB Packet Storm
194283 6.1 MEDIUM
Network
pomerium pomerium Pomerium from version 0.10.0-0.13.3 has an Open Redirect in the user sign-in/out process CWE-601
Open Redirect
CVE-2021-29652 2024-11-21 15:01 2021-04-2 Show GitHub Exploit DB Packet Storm
194284 6.1 MEDIUM
Network
pomerium pomerium Pomerium before 0.13.4 has an Open Redirect (issue 1 of 2). CWE-601
Open Redirect
CVE-2021-29651 2024-11-21 15:01 2021-04-2 Show GitHub Exploit DB Packet Storm
194285 7.5 HIGH
Network
pikepdf_project
fedoraproject
pikepdf
fedora
models/metadata.py in the pikepdf package 1.3.0 through 2.9.2 for Python allows XXE when parsing XMP metadata entries. CWE-611
XXE
CVE-2021-29421 2024-11-21 15:01 2021-04-2 Show GitHub Exploit DB Packet Storm
194286 7.5 HIGH
Network
arenavec_project arenavec An issue was discovered in the arenavec crate through 2021-01-12 for Rust. A drop of uninitialized memory can sometimes occur upon a panic in T::default(). CWE-787
 Out-of-bounds Write
CVE-2021-29930 2024-11-21 15:01 2021-04-1 Show GitHub Exploit DB Packet Storm
194287 7.5 HIGH
Network
endian_trait_project endian_trait An issue was discovered in the endian_trait crate through 2021-01-04 for Rust. A double drop can occur when a user-provided Endian impl panics. CWE-415
 Double Free
CVE-2021-29929 2024-11-21 15:01 2021-04-1 Show GitHub Exploit DB Packet Storm
194288 4.8 MEDIUM
Network
course_registration_management_system_project course_registration_management_system CourseMS (aka Course Registration Management System) 2.1 is affected by cross-site scripting (XSS). When an attacker with access to an Admin account creates a Job Title in the Site area (aka the admi… CWE-79
Cross-site Scripting
CVE-2021-29663 2024-11-21 15:01 2021-04-1 Show GitHub Exploit DB Packet Storm
194289 7.5 HIGH
Network
data\
netapp
\
snapcenter
The Data::Validate::IP module through 0.29 for Perl does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypa… CWE-704
 Incorrect Type Conversion or Cast
CVE-2021-29662 2024-11-21 15:01 2021-04-1 Show GitHub Exploit DB Packet Storm
194290 8.8 HIGH
Network
vscode-rufo_project vscode-rufo The unofficial vscode-rufo extension before 0.0.4 for Visual Studio Code allows attackers to execute arbitrary binaries if the user opens a crafted workspace folder. NVD-CWE-Other
CVE-2021-29658 2024-11-21 15:01 2021-04-1 Show GitHub Exploit DB Packet Storm