Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228441 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の AutoWrapperChanger クラスにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0745 2013-02-22 18:44 2013-01-8 Show GitHub Exploit DB Packet Storm
228442 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0744 2013-02-22 18:41 2013-01-8 Show GitHub Exploit DB Packet Storm
228443 5.1 警告 IBM - IBM Tivoli Storage Manager のクライアントにおける不特定のアクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-0472 2013-02-22 15:59 2012-01-31 Show GitHub Exploit DB Packet Storm
228444 4.3 警告 IBM - IBM Tivoli Storage Manager のクライアントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0471 2013-02-22 15:59 2012-01-31 Show GitHub Exploit DB Packet Storm
228445 3.5 注意 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0478 2013-02-22 15:58 2013-02-21 Show GitHub Exploit DB Packet Storm
228446 6 警告 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0477 2013-02-22 15:58 2013-02-21 Show GitHub Exploit DB Packet Storm
228447 6.8 警告 シスコシステムズ - Cisco Unified MeetingPlace のサーバにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-1128 2013-02-22 12:14 2013-02-11 Show GitHub Exploit DB Packet Storm
228448 2.6 注意 IBM - IBM WebSphere Message Broker におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0466 2013-02-21 18:37 2013-02-19 Show GitHub Exploit DB Packet Storm
228449 3.5 注意 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0457 2013-02-21 18:36 2013-02-15 Show GitHub Exploit DB Packet Storm
228450 6.5 警告 IBM - 複数の IBM 製品における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6357 2013-02-21 18:36 2013-02-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194201 7.5 HIGH
Network
mintty_project mintty Mintty before 3.4.5 allows remote servers to cause a denial of service (Windows GUI hang) by telling the Mintty window to change its title repeatedly at high speed, which results in many SetWindowTex… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28848 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194202 7.5 HIGH
Network
mobatek mobaxterm MobaXterm before 21.0 allows remote servers to cause a denial of service (Windows GUI hang) via tab title change requests that are sent repeatedly at high speed, which results in many SetWindowTextA … NVD-CWE-noinfo
CVE-2021-28847 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194203 8.8 HIGH
Network
qnap video_station A command injection vulnerability has been reported to affect certain versions of Video Station. If exploited, this vulnerability allows remote attackers to execute arbitrary commands. This issue aff… CWE-77
Command Injection
CVE-2021-28812 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194204 5.4 MEDIUM
Network
qnap q\'center A post-authentication reflected XSS vulnerability has been reported to affect QNAP NAS running Q’center. If exploited, this vulnerability allows remote attackers to inject malicious code. QNAP have a… - CVE-2021-28807 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194205 5.4 MEDIUM
Network
qnap qts
quts_hero
qutscloud
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Syst… - CVE-2021-28806 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194206 5.5 MEDIUM
Local
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decode… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2021-28678 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194207 7.5 HIGH
Network
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For EPS data, the readline implementation used in EPSImageFile has to deal with any combination of \r and \n as line endings. It used an accidentally q… NVD-CWE-noinfo
CVE-2021-28677 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194208 7.5 HIGH
Network
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. For FLI data, FliDecode did not properly check that the block advance was non-zero, potentially leading to an infinite loop on load. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-28676 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194209 5.5 MEDIUM
Local
python
fedoraproject
pillow
fedora
An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Ima… CWE-252
 Unchecked Return Value
CVE-2021-28675 2024-11-21 15:00 2021-06-3 Show GitHub Exploit DB Packet Storm
194210 9.8 CRITICAL
Network
synology photo_station Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in thumbnail component in Synology Photo Station before 6.8.14-3500 allows remote attackers users to… - CVE-2021-29089 2024-11-21 15:00 2021-06-2 Show GitHub Exploit DB Packet Storm