Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228311 5 警告 サイボウズ
日本電気
IBM
Apache Software Foundation
富士通
日立
- Apache Tomcat におけるサービス運用妨害 (CPU 資源の消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4858 2013-03-8 15:39 2012-01-5 Show GitHub Exploit DB Packet Storm
228312 5.4 警告 IBM - WebSphere Cast Iron Cloud インテグレーションにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-0465 2013-03-8 14:26 2013-02-12 Show GitHub Exploit DB Packet Storm
228313 6.8 警告 Google - Google Chrome で使用される libxslt におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2893 2013-03-8 14:19 2012-09-25 Show GitHub Exploit DB Packet Storm
228314 5 警告 サイバートラスト株式会社
Google
Mozilla Foundation
レッドハット
- Google Chrome などで利用される xsltGenerateIdFunction 関数における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-1202 2013-03-8 13:50 2011-03-8 Show GitHub Exploit DB Packet Storm
228315 6.8 警告 The GIMP Team - GIMP の GIF 画像形式用プラグインにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-3481 2013-03-8 13:47 2012-08-25 Show GitHub Exploit DB Packet Storm
228316 6.8 警告 The GIMP Team - GIMP の KiSS CEL ファイルフォーマットプラグインにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3403 2013-03-8 13:45 2012-08-25 Show GitHub Exploit DB Packet Storm
228317 4.3 警告 シスコシステムズ - Cisco Security Monitoring, Analysis and Response System における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-1140 2013-03-7 19:17 2013-03-4 Show GitHub Exploit DB Packet Storm
228318 3.5 注意 IBM - IBM TADDM の Data Management Portal Web User Interface におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5942 2013-03-7 19:16 2013-03-1 Show GitHub Exploit DB Packet Storm
228319 3.5 注意 IBM - IBM TADDM の Data Management Portal Web User Interface におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5939 2013-03-7 19:13 2013-03-1 Show GitHub Exploit DB Packet Storm
228320 5.8 警告 IBM - IBM TADDM の SSL 設定におけるサーバを偽装される脆弱性 CWE-16
環境設定
CVE-2012-5770 2013-03-7 19:12 2013-03-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194201 7.5 HIGH
Network
mintty_project mintty Mintty before 3.4.5 allows remote servers to cause a denial of service (Windows GUI hang) by telling the Mintty window to change its title repeatedly at high speed, which results in many SetWindowTex… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28848 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194202 7.5 HIGH
Network
mobatek mobaxterm MobaXterm before 21.0 allows remote servers to cause a denial of service (Windows GUI hang) via tab title change requests that are sent repeatedly at high speed, which results in many SetWindowTextA … NVD-CWE-noinfo
CVE-2021-28847 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194203 8.8 HIGH
Network
qnap video_station A command injection vulnerability has been reported to affect certain versions of Video Station. If exploited, this vulnerability allows remote attackers to execute arbitrary commands. This issue aff… CWE-77
Command Injection
CVE-2021-28812 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194204 5.4 MEDIUM
Network
qnap q\'center A post-authentication reflected XSS vulnerability has been reported to affect QNAP NAS running Q’center. If exploited, this vulnerability allows remote attackers to inject malicious code. QNAP have a… - CVE-2021-28807 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194205 5.4 MEDIUM
Network
qnap qts
quts_hero
qutscloud
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Syst… - CVE-2021-28806 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194206 5.5 MEDIUM
Local
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decode… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2021-28678 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194207 7.5 HIGH
Network
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For EPS data, the readline implementation used in EPSImageFile has to deal with any combination of \r and \n as line endings. It used an accidentally q… NVD-CWE-noinfo
CVE-2021-28677 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194208 7.5 HIGH
Network
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For FLI data, FliDecode did not properly check that the block advance was non-zero, potentially leading to an infinite loop on load. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-28676 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194209 5.5 MEDIUM
Local
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Ima… CWE-252
 Unchecked Return Value
CVE-2021-28675 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194210 9.8 CRITICAL
Network
synology photo_station Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in thumbnail component in Synology Photo Station before 6.8.14-3500 allows remote attackers users to… - CVE-2021-29089 2024-11-21 15:00 2021-06-2 Show GitHub Exploit DB Packet Storm