Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228371 4.3 警告 ジュニパーネットワークス - Juniper SmartPass WLAN Security Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3498 2013-05-10 14:51 2013-05-8 Show GitHub Exploit DB Packet Storm
228372 4.7 警告 ジュニパーネットワークス - Junos Space JA1500 アプライアンスなどで使用される Juniper Junos Space におけるパスワードを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3497 2013-05-10 14:51 2013-05-8 Show GitHub Exploit DB Packet Storm
228373 3.5 注意 シマンテック - Symantec Brightmail Gateway におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1611 2013-05-10 14:07 2013-05-8 Show GitHub Exploit DB Packet Storm
228374 4.3 警告 Invensys - Invensys Wonderware Information Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0688 2013-05-10 14:07 2013-05-7 Show GitHub Exploit DB Packet Storm
228375 9.3 危険 Invensys - Invensys Wonderware Information Server における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2013-0686 2013-05-10 14:06 2013-05-7 Show GitHub Exploit DB Packet Storm
228376 9.3 危険 Invensys - Invensys Wonderware Information Server における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0685 2013-05-10 14:06 2013-05-7 Show GitHub Exploit DB Packet Storm
228377 7.5 危険 Invensys - Invensys Wonderware Information Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-0684 2013-05-10 14:05 2013-05-7 Show GitHub Exploit DB Packet Storm
228378 9.3 危険 IBM - IBM WebSphere DataPower XC10 アプライアンスデバイスにおける認証を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-0600 2013-05-10 14:04 2013-05-3 Show GitHub Exploit DB Packet Storm
228379 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-1876 2013-05-9 19:47 2012-06-12 Show GitHub Exploit DB Packet Storm
228380 6.8 警告 GroundWork - GroundWork Monitor Enterprise におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3513 2013-05-9 16:33 2013-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
193771 5.5 MEDIUM
Local
razer synapse Multiple system services installed alongside the Razer Synapse 3 software suite perform privileged operations on entries within the Razer Chroma SDK subkey. These privileged operations consist of fil… CWE-276
Incorrect Default Permissions 
CVE-2021-30494 2024-11-21 15:04 2021-04-15 Show GitHub Exploit DB Packet Storm
193772 5.5 MEDIUM
Local
razer synapse Multiple system services installed alongside the Razer Synapse 3 software suite perform privileged operations on entries within the ChromaBroadcast subkey. These privileged operations consist of file… CWE-276
Incorrect Default Permissions 
CVE-2021-30493 2024-11-21 15:04 2021-04-15 Show GitHub Exploit DB Packet Storm
193773 5.4 MEDIUM
Network
htmly htmly htmly 2.8.0 allows stored XSS via the blog title, Tagline, or Description to config.html.php. CWE-79
Cross-site Scripting
CVE-2021-30637 2024-11-21 15:04 2021-04-13 Show GitHub Exploit DB Packet Storm
193774 9.8 CRITICAL
Network
glsl_linting_project glsl_linting The unofficial GLSL Linting extension before 1.4.0 for Visual Studio Code allows remote code execution via a crafted glslangValidatorPath in the workspace configuration. NVD-CWE-Other
CVE-2021-30503 2024-11-21 15:04 2021-04-13 Show GitHub Exploit DB Packet Storm
193775 6.5 MEDIUM
Network
ezxml_project
debian
ezxml
debian_linux
An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd(), while parsing a crafted XML file, performs incorrect memory handling, leading to a NULL pointer dereference wh… CWE-476
 NULL Pointer Dereference
CVE-2021-30485 2024-11-21 15:04 2021-04-12 Show GitHub Exploit DB Packet Storm
193776 9.0 CRITICAL
Network
valvesoftware steam_client Valve Steam through 2021-04-10, when a Source engine game is installed, allows remote authenticated users to execute arbitrary code because of a buffer overflow that occurs for a Steam invite after o… CWE-120
Classic Buffer Overflow
CVE-2021-30481 2024-11-21 15:04 2021-04-11 Show GitHub Exploit DB Packet Storm
193777 8.8 HIGH
Network
zoom chat Zoom Chat through 2021-04-09 on Windows and macOS allows certain remote authenticated attackers to execute arbitrary code without user interaction. An attacker must be within the same organization, o… NVD-CWE-noinfo
CVE-2021-30480 2024-11-21 15:04 2021-04-10 Show GitHub Exploit DB Packet Storm
193778 6.1 MEDIUM
Network
dzzoffice dzzoffice A reflected cross-site scripting (XSS) vulnerability in the zero parameter of dzzoffice 2.02.1_SC_UTF8 allows attackers to execute arbitrary web scripts or HTML. CWE-79
Cross-site Scripting
CVE-2021-30203 2024-11-21 15:03 2023-06-27 Show GitHub Exploit DB Packet Storm
193779 7.5 HIGH
Network
vsftpd_project vsftpd VSFTPD 3.0.3 allows attackers to cause a denial of service due to limited number of connections allowed. NVD-CWE-noinfo
CVE-2021-30047 2024-11-21 15:03 2023-08-23 Show GitHub Exploit DB Packet Storm
193780 5.3 MEDIUM
Network
dzzoffice dzzoffice Incorrect access control in the component /index.php?mod=system&op=orgtree of dzzoffice 2.02.1_SC_UTF8 allows unauthenticated attackers to browse departments and usernames. NVD-CWE-Other
CVE-2021-30205 2024-11-21 15:03 2023-06-27 Show GitHub Exploit DB Packet Storm