Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228241 6.8 警告 Crunchify - WordPress 用 FourSquare Checkins プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2709 2013-04-30 17:54 2013-04-22 Show GitHub Exploit DB Packet Storm
228242 6.8 警告 Crunchify - WordPress 用 All in One Webmaster プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2696 2013-04-30 17:52 2013-04-22 Show GitHub Exploit DB Packet Storm
228243 5 警告 Blink Web Effects - WordPress 用 Social Media Widget プラグインにおける任意のファイルのアップロードを強制される脆弱性 CWE-noinfo
情報不足
CVE-2013-1949 2013-04-30 17:51 2013-04-9 Show GitHub Exploit DB Packet Storm
228244 10 危険 Rob Westgeest - Ruby 用 md2pdf gem の converter.rb における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-1948 2013-04-30 17:51 2013-04-10 Show GitHub Exploit DB Packet Storm
228245 9.3 危険 Kelly D. Redding - Ruby 用 kelredd-pruview gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1947 2013-04-30 17:50 2013-04-4 Show GitHub Exploit DB Packet Storm
228246 9.3 危険 karteek-docsplit - Ruby 用 Karteek Docsplit gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1933 2013-04-30 17:49 2013-04-1 Show GitHub Exploit DB Packet Storm
228247 6.8 警告 Novell
plataformatec
- Ruby 用 Devise gem における不正な結果が返される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0233 2013-04-30 17:48 2013-01-28 Show GitHub Exploit DB Packet Storm
228248 7.5 危険 Grape
Erik Michaels-Ober
- Grape などの製品で使用される Ruby 用 multi_xml gem におけるオブジェクトインジェクション攻撃を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0175 2013-04-30 17:43 2013-01-10 Show GitHub Exploit DB Packet Storm
228249 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4466 2013-04-30 17:29 2012-10-3 Show GitHub Exploit DB Packet Storm
228250 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4464 2013-04-30 17:25 2012-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194151 6.5 MEDIUM
Network
ibm engineering_requirements_quality_assistant_on-premises IBM Engineering Requirements Quality Assistant prior to 3.1.3 could allow an authenticated user to cause a denial of service. IBM X-Force ID: 207413. NVD-CWE-noinfo
CVE-2021-29899 2024-11-21 15:01 2022-03-19 Show GitHub Exploit DB Packet Storm
194152 9.8 CRITICAL
Network
pexip infinity_connect Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation. The allow list is not properly checked. CWE-295
Improper Certificate Validation 
CVE-2021-29656 2024-11-21 15:01 2022-02-19 Show GitHub Exploit DB Packet Storm
194153 9.8 CRITICAL
Network
pexip infinity_connect Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks. Thus, untrusted code may execute. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2021-29655 2024-11-21 15:01 2022-02-19 Show GitHub Exploit DB Packet Storm
194154 5.3 MEDIUM
Network
globalnorthstar northstar_club_management Directory traversal in /northstar/Common/NorthFileManager/fileManagerObjects.jsp Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to browse and list the di… CWE-22
Path Traversal
CVE-2021-29398 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194155 7.5 HIGH
Network
globalnorthstar northstar_club_management Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote local user to intercept users credentials trans… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2021-29397 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194156 9.8 CRITICAL
Network
globalnorthstar northstar_club_management Systemic Insecure Permissions in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to use various functionalities without authentication. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-29396 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194157 7.5 HIGH
Network
globalnorthstar northstar_club_management Directory travesal in /northstar/filemanager/download.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to download arbitrary files, including JSP so… CWE-22
Path Traversal
CVE-2021-29395 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194158 6.5 MEDIUM
Network
globalnorthstar northstar_club_management Account Hijacking in /northstar/Admin/changePassword.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote authenticated users to change the password of any targeted user acco… CWE-863
 Incorrect Authorization
CVE-2021-29394 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194159 9.8 CRITICAL
Network
globalnorthstar northstar_club_management Remote Code Execution in cominput.jsp and comoutput.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to inject and execute arbitrary system commands… CWE-78
OS Command 
CVE-2021-29393 2024-11-21 15:01 2022-02-5 Show GitHub Exploit DB Packet Storm
194160 2.7 LOW
Network
ibm security_guardium_insights IBM Security Guardium Insights 3.0 could allow an authenticated user to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 205256. CWE-613
 Insufficient Session Expiration
CVE-2021-29846 2024-11-21 15:01 2022-01-27 Show GitHub Exploit DB Packet Storm