Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228511 6.5 警告 Open Constructor - Open Constructor における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3873 2013-01-4 14:47 2012-12-28 Show GitHub Exploit DB Packet Storm
228512 4.3 警告 Open Constructor - Open Constructor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3872 2013-01-4 14:46 2012-12-28 Show GitHub Exploit DB Packet Storm
228513 3.5 注意 Open Constructor - Open Constructor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3871 2013-01-4 14:22 2012-12-28 Show GitHub Exploit DB Packet Storm
228514 3.5 注意 Open Constructor - Open Constructor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3870 2013-01-4 14:22 2012-12-28 Show GitHub Exploit DB Packet Storm
228515 3.3 注意 サムスン - 複数の Samsung Galaxy デバイス上の Android 用 SamsungDive におけるデバイスの発見を妨害される脆弱性 CWE-200
情報漏えい
CVE-2012-6337 2013-01-4 14:07 2012-12-31 Show GitHub Exploit DB Packet Storm
228516 3.3 注意 Lookout Mobile Security - Lookout の端末捜索機能における任意の位置データに偽装される脆弱性 CWE-noinfo
情報不足
CVE-2012-6336 2013-01-4 14:04 2012-12-31 Show GitHub Exploit DB Packet Storm
228517 3.3 注意 AVG Technologies - Android 用 AVG AntiVirus の Anti-theft サービスにおける任意の位置データに偽装される脆弱性 CWE-noinfo
情報不足
CVE-2012-6335 2013-01-4 14:03 2012-12-31 Show GitHub Exploit DB Packet Storm
228518 5.8 警告 IBM - IBM Security AppScan Enterprise および Rational Policy Tester における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-0741 2013-01-4 12:09 2012-12-28 Show GitHub Exploit DB Packet Storm
228519 5.8 警告 IBM - IBM Security AppScan Enterprise および Rational Policy Tester における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-0738 2013-01-4 12:08 2012-12-28 Show GitHub Exploit DB Packet Storm
228520 5 警告 IBM
Apache Software Foundation
富士通
サイバートラスト株式会社
ヒューレット・パッカード
ターボリナックス
オラクル
日立
レッドハット
- Apache Portable Utility ライブラリの apr_brigade_split_line 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-1623 2012-12-28 18:39 2010-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194301 6.5 MEDIUM
Local
linux
debian
netapp
linux_kernel
debian_linux
cloud_backup
solidfire_baseboard_management_controller_firmware
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a resul… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28038 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
194302 9.8 CRITICAL
Network
internment_project internment An issue was discovered in the internment crate before 0.4.2 for Rust. There is a data race that can cause memory corruption because of the unconditional implementation of Sync for Intern<T>. NVD-CWE-noinfo
CVE-2021-28037 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194303 7.5 HIGH
Network
quinn_project quinn An issue was discovered in the quinn crate before 0.7.0 for Rust. It may have invalid memory access for certain versions of the standard library because it relies on a direct cast of std::net::Socket… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-28036 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194304 9.8 CRITICAL
Network
stack_dst_project stack_dst An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a drop of uninitialized memory can occur upon a val.clone() panic. CWE-908
 Use of Uninitialized Resource
CVE-2021-28035 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194305 9.8 CRITICAL
Network
stack_dst_project stack_dst An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a double free can occur upon a val.clone() panic. CWE-415
 Double Free
CVE-2021-28034 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194306 9.8 CRITICAL
Network
byte_struct_project byte_struct An issue was discovered in the byte_struct crate before 0.6.1 for Rust. There can be a drop of uninitialized memory if a certain deserialization method panics. CWE-908
 Use of Uninitialized Resource
CVE-2021-28033 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194307 9.8 CRITICAL
Network
nano_arena_project nano_arena An issue was discovered in the nano_arena crate before 0.5.2 for Rust. There is an aliasing violation in split_at because two mutable references can exist for the same element, if Borrow<Idx> behaves… NVD-CWE-Other
CVE-2021-28032 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194308 9.8 CRITICAL
Network
scratchpad_project scratchpad An issue was discovered in the scratchpad crate before 1.3.1 for Rust. The move_elements function can have a double-free upon a panic in a user-provided f function. CWE-415
 Double Free
CVE-2021-28031 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194309 7.5 HIGH
Network
truetype_project truetype An issue was discovered in the truetype crate before 0.30.1 for Rust. Attackers can read the contents of uninitialized memory locations via a user-provided Read operation within Tape::take_bytes. CWE-908
 Use of Uninitialized Resource
CVE-2021-28030 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
194310 7.5 HIGH
Network
toodee_project toodee An issue was discovered in the toodee crate before 0.3.0 for Rust. The row-insertion feature allows attackers to read the contents of uninitialized memory locations. CWE-908
 Use of Uninitialized Resource
CVE-2021-28029 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm