Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228501 3.3 注意 Belkin International - Belkin N900 ルータの WPA2 の実装における Wi-Fi ネットワークにアクセスされる脆弱性 CWE-310
暗号の問題
CVE-2012-6371 2013-01-4 16:44 2012-12-31 Show GitHub Exploit DB Packet Storm
228502 7.5 危険 LemonLDAP::NG - LemonLDAP::NG におけるアクセスコントロール制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6426 2013-01-4 16:39 2012-12-18 Show GitHub Exploit DB Packet Storm
228503 5.8 警告 IBM - IBM SPSS Modeler における任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2012-5769 2013-01-4 16:38 2012-12-28 Show GitHub Exploit DB Packet Storm
228504 7.5 危険 i-GEN Solutions - i-GEN opLYNX の Central アプリケーションにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2012-4688 2013-01-4 16:31 2012-12-27 Show GitHub Exploit DB Packet Storm
228505 5.8 警告 vBulletin Solutions, Inc. - vBulletin の forum/login.php におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2011-5251 2013-01-4 16:23 2011-06-2 Show GitHub Exploit DB Packet Storm
228506 4.3 警告 AgileBits - AgileBits 1Password におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6369 2013-01-4 16:20 2012-12-28 Show GitHub Exploit DB Packet Storm
228507 4.3 警告 Simple Invoices - SimpleInvoices におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4932 2013-01-4 16:16 2012-12-28 Show GitHub Exploit DB Packet Storm
228508 5 警告 ModSecurity - Apache HTTP Server 用 mod_security2 モジュールにおけるルールを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4528 2013-01-4 16:14 2012-10-15 Show GitHub Exploit DB Packet Storm
228509 4.3 警告 MediaWiki - MediaWiki 用 RSS Reader 拡張機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6453 2013-01-4 14:54 2012-12-31 Show GitHub Exploit DB Packet Storm
228510 4.3 警告 Cerberus, LLC - Cerberus FTP Server の管理用 Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6339 2013-01-4 14:51 2012-12-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194331 5.9 MEDIUM
Network
cira canadian_shield The CIRA Canadian Shield app before 4.0.13 for iOS lacks SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2021-27189 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194332 5.4 MEDIUM
Network
mybb mybb MyBB before 1.8.25 allows stored XSS via nested [email] tags with MyCode (aka BBCode). CWE-79
Cross-site Scripting
CVE-2021-27279 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194333 9.8 CRITICAL
Network
shinobi shinobi_pro An issue was discovered in Shinobi through ocean version 1. lib/auth.js has Incorrect Access Control. Valid API Keys are held in an internal JS Object. Therefore an attacker can use JS Proto Method n… CWE-798
 Use of Hard-coded Credentials
CVE-2021-27228 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194334 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Description field. CWE-79
Cross-site Scripting
CVE-2021-27371 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194335 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Last Name field. CWE-79
Cross-site Scripting
CVE-2021-27370 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194336 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the Middle Name field. CWE-79
Cross-site Scripting
CVE-2021-27369 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194337 5.4 MEDIUM
Network
monicahq monica The Contact page in Monica 2.19.1 allows stored XSS via the First Name field. CWE-79
Cross-site Scripting
CVE-2021-27368 2024-11-21 14:57 2021-02-23 Show GitHub Exploit DB Packet Storm
194338 5.3 MEDIUM
Network
telegram telegram The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session. CWE-613
 Insufficient Session Expiration
CVE-2021-27351 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm
194339 6.5 MEDIUM
Network
yeastar neogate_tg400_firmware Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key. CWE-22
Path Traversal
CVE-2021-27328 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm
194340 6.1 MEDIUM
Network
zohocorp manageengine_adselfservice_plus A Server-side request forgery (SSRF) vulnerability in the ProductConfig servlet in Zoho ManageEngine ADSelfService Plus through 6013 allows a remote unauthenticated attacker to perform blind HTTP req… CWE-79
CWE-918
Cross-site Scripting
Server-Side Request Forgery (SSRF) 
CVE-2021-27214 2024-11-21 14:57 2021-02-20 Show GitHub Exploit DB Packet Storm