Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228461 6.2 警告 レッドハット - Red Hat Enterprise Virtualization Manager における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-0860 2013-01-8 15:36 2012-12-4 Show GitHub Exploit DB Packet Storm
228462 3.7 注意 レッドハット - Red Hat Enterprise Virtualization Manager における他のユーザのデスクトップセッションへアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4316 2013-01-8 15:31 2012-12-4 Show GitHub Exploit DB Packet Storm
228463 3.3 注意 Centrify - Centrify Suite に同梱されている Centrify Deployment Manager における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2012-6348 2013-01-8 15:25 2013-01-4 Show GitHub Exploit DB Packet Storm
228464 4.3 警告 Digium - 複数の Asterisk 製品におけるサービス運用妨害 (リソース消費) の脆弱性 CWE-119
バッファエラー
CVE-2012-5977 2013-01-7 18:36 2013-01-2 Show GitHub Exploit DB Packet Storm
228465 7.5 危険 SWI-Prolog - SWI-Prolog の os/pl-glob.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6090 2013-01-7 18:34 2012-12-16 Show GitHub Exploit DB Packet Storm
228466 7.5 危険 SWI-Prolog - SWI-Prolog の os/pl-os.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6089 2013-01-7 18:33 2012-12-16 Show GitHub Exploit DB Packet Storm
228467 5 警告 Digium - 複数の Asterisk 製品におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2012-5976 2013-01-7 18:23 2013-01-2 Show GitHub Exploit DB Packet Storm
228468 5 警告 Ruby on Rails project - Ruby on Rails 用 Authlogic gem における SQL インジェクションの脆弱性 CWE-200
情報漏えい
CVE-2012-6497 2013-01-7 18:04 2013-01-4 Show GitHub Exploit DB Packet Storm
228469 4.6 警告 Opera Software ASA - UNIX 上で稼働する Opera における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6472 2013-01-7 16:52 2012-12-18 Show GitHub Exploit DB Packet Storm
228470 5 警告 Opera Software ASA - Opera におけるアドレスフィールドを偽装される脆弱性 CWE-Other
その他
CVE-2012-6471 2013-01-7 16:52 2012-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194331 5.9 MEDIUM
Network
cira canadian_shield The CIRA Canadian Shield app before 4.0.13 for iOS lacks SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2021-27189 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194332 5.4 MEDIUM
Network
mybb mybb MyBB before 1.8.25 allows stored XSS via nested [email] tags with MyCode (aka BBCode). CWE-79
Cross-site Scripting
CVE-2021-27279 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194333 9.8 CRITICAL
Network
shinobi shinobi_pro An issue was discovered in Shinobi through ocean version 1. lib/auth.js has Incorrect Access Control. Valid API Keys are held in an internal JS Object. Therefore an attacker can use JS Proto Method n… CWE-798
 Use of Hard-coded Credentials
CVE-2021-27228 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194334 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Description field. CWE-79
Cross-site Scripting
CVE-2021-27371 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194335 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Last Name field. CWE-79
Cross-site Scripting
CVE-2021-27370 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194336 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Middle Name field. CWE-79
Cross-site Scripting
CVE-2021-27369 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194337 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the First Name field. CWE-79
Cross-site Scripting
CVE-2021-27368 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194338 5.3 MEDIUM
Network
telegram telegram The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session. CWE-613
 Insufficient Session Expiration
CVE-2021-27351 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm
194339 6.5 MEDIUM
Network
yeastar neogate_tg400_firmware Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key. CWE-22
Path Traversal
CVE-2021-27328 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm
194340 6.1 MEDIUM
Network
zohocorp manageengine_adselfservice_plus A Server-side request forgery (SSRF) vulnerability in the ProductConfig servlet in Zoho ManageEngine ADSelfService Plus through 6013 allows a remote unauthenticated attacker to perform blind HTTP req… CWE-79
CWE-918
Cross-site Scripting
Server-Side Request Forgery (SSRF) 
CVE-2021-27214 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm