Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228421 7.5 危険 Digineo - Ruby 用 Thumbshooter gem の lib/thumbshooter.rb における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-1898 2013-04-11 19:42 2013-03-25 Show GitHub Exploit DB Packet Storm
228422 7.5 危険 Dan Kubb - Ruby 用 extlib gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1802 2013-04-11 19:41 2013-01-14 Show GitHub Exploit DB Packet Storm
228423 7.5 危険 John Nunemaker - Ruby 用 httparty gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1801 2013-04-11 19:41 2013-01-14 Show GitHub Exploit DB Packet Storm
228424 7.5 危険 John Nunemaker - Ruby 用 crack gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1800 2013-04-11 19:40 2013-01-14 Show GitHub Exploit DB Packet Storm
228425 7.5 危険 Daniel Harrington - Ruby 用 nori gem におけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0285 2013-04-11 19:39 2013-01-14 Show GitHub Exploit DB Packet Storm
228426 5 警告 New Relic - Ruby Agent における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0284 2013-04-11 19:38 2013-02-13 Show GitHub Exploit DB Packet Storm
228427 6.8 警告 Michael Bleigh and Intridea, Inc. - Ruby 用 omniauth-oauth2 gem におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6134 2013-04-11 19:37 2013-02-25 Show GitHub Exploit DB Packet Storm
228428 5.8 警告 Apache Software Foundation - Apache Maven のデフォルト設定におけるサーバになりすまされる脆弱性 CWE-16
環境設定
CVE-2013-0253 2013-04-11 17:36 2013-04-2 Show GitHub Exploit DB Packet Storm
228429 4.3 警告 fedorahosted.org - cronie におけるファイル記述子が漏えいする脆弱性 CWE-200
情報漏えい
CVE-2012-6097 2013-04-11 17:35 2013-01-9 Show GitHub Exploit DB Packet Storm
228430 2.1 注意 Gluster, Inc.
レッドハット
- Red Hat Storage の GlusterFS 機能における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5635 2013-04-11 17:35 2013-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
193991 7.5 HIGH
Network
oracle outside_in_technology Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). The supported version that is affected is 8.5.5. Easily exploitable vulnerabilit… NVD-CWE-noinfo
CVE-2021-2451 2024-11-21 15:03 2021-07-21 Show GitHub Exploit DB Packet Storm
193992 7.5 HIGH
Network
oracle outside_in_technology Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). The supported version that is affected is 8.5.5. Easily exploitable vulnerabilit… NVD-CWE-noinfo
CVE-2021-2450 2024-11-21 15:03 2021-07-21 Show GitHub Exploit DB Packet Storm
193993 7.5 HIGH
Network
oracle outside_in_technology Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). The supported version that is affected is 8.5.5. Easily exploitable vulnerabilit… NVD-CWE-noinfo
CVE-2021-2449 2024-11-21 15:03 2021-07-21 Show GitHub Exploit DB Packet Storm
193994 3.7 LOW
Local
oracle financial_services_crime_and_compliance_investigation_hub Vulnerability in the Oracle Financial Services Crime and Compliance Investigation Hub product of Oracle Financial Services Applications (component: Reports). The supported version that is affected is… NVD-CWE-noinfo
CVE-2021-2448 2024-11-21 15:03 2021-07-21 Show GitHub Exploit DB Packet Storm
193995 6.5 MEDIUM
Network
apache
oracle
sshd
retail_customer_management_and_segmentation_foundation
flexcube_universal_banking
middleware_common_libraries_and_tools
communications_cloud_native_core_console
banking_payments
A vulnerability in sshd-core of Apache Mina SSHD allows an attacker to overflow the server causing an OutOfMemory error. This issue affects the SFTP and port forwarding features of Apache Mina SSHD v… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2021-30129 2024-11-21 15:03 2021-07-12 Show GitHub Exploit DB Packet Storm
193996 7.5 HIGH
Network
kaseya vsa The API /vsaWS/KaseyaWS.asmx can be used to submit XML to the system. When this XML is processed (external) entities are insecurely processed and fetched by the system and returned to the attacker. D… CWE-611
XXE
CVE-2021-30201 2024-11-21 15:03 2021-07-9 Show GitHub Exploit DB Packet Storm
193997 6.5 MEDIUM
Network
kaseya vsa Semi-authenticated local file inclusion The contents of arbitrary files can be returned by the webserver Example request: `https://x.x.x.x/KLC/js/Kaseya.SB.JS/js.aspx?path=C:\Kaseya\WebPages\dl.asp` … CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2021-30121 2024-11-21 15:03 2021-07-9 Show GitHub Exploit DB Packet Storm
193998 7.5 HIGH
Network
kaseya vsa Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement. The need to use 2FA for authentication in enforce client-side instead of server-side and can be bypassed using a local proxy. T… CWE-669
 Incorrect Resource Transfer Between Spheres
CVE-2021-30120 2024-11-21 15:03 2021-07-9 Show GitHub Exploit DB Packet Storm
193999 5.4 MEDIUM
Network
kaseya vsa Authenticated reflective XSS in HelpDeskTab/rcResults.asp The parameter result of /HelpDeskTab/rcResults.asp is insecurely returned in the requested web page and can be used to perform a Cross Site S… CWE-79
Cross-site Scripting
CVE-2021-30119 2024-11-21 15:03 2021-07-9 Show GitHub Exploit DB Packet Storm
194000 9.8 CRITICAL
Network
kaseya vsa An attacker can upload files with the privilege of the Web Server process for Kaseya VSA Unified Remote Monitoring & Management (RMM) 9.5.4.2149 and subsequently use these files to execute asp comman… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-30118 2024-11-21 15:03 2021-07-9 Show GitHub Exploit DB Packet Storm