Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228581 7.5 危険 xlinesoft - PHPRunner における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0963 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228582 10 危険 The Tor Project - Tor における脆弱性 CWE-noinfo
情報不足
CVE-2009-0939 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
228583 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0938 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
228584 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0937 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
228585 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-0936 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
228586 4.3 警告 ProcessOne - ejabberd におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0934 2012-12-20 19:10 2009-03-17 Show GitHub Exploit DB Packet Storm
228587 7.5 危険 roman bogorodskiy - nForum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0882 2012-12-20 19:10 2009-03-12 Show GitHub Exploit DB Packet Storm
228588 5 警告 wesnoth - Wesnoth の src/terrain_translation.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0878 2012-12-20 19:10 2009-03-12 Show GitHub Exploit DB Packet Storm
228589 4.3 警告 tangocms - TangoCMS の admincp コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0862 2012-12-20 19:10 2009-02-18 Show GitHub Exploit DB Packet Storm
228590 6.8 警告 stewart howe - CelerBB の login.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-0853 2012-12-20 19:10 2009-03-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195011 6.5 MEDIUM
Network
advancedcustomfields advanced_custom_fields Advanced Custom Fields versions prior to 5.11 and Advanced Custom Fields Pro versions prior to 5.11 contain a missing authorization vulnerability in moving the field group which may allow a user to m… CWE-862
 Missing Authorization
CVE-2021-20867 2024-11-21 14:47 2021-12-13 Show GitHub Exploit DB Packet Storm
195012 6.5 MEDIUM
Network
advancedcustomfields advanced_custom_fields Advanced Custom Fields versions prior to 5.11 and Advanced Custom Fields Pro versions prior to 5.11 contain a missing authorization vulnerability in obtaining the user list which may allow a user to … CWE-862
 Missing Authorization
CVE-2021-20866 2024-11-21 14:47 2021-12-13 Show GitHub Exploit DB Packet Storm
195013 7.5 HIGH
Network
advancedcustomfields advanced_custom_fields Advanced Custom Fields versions prior to 5.11 and Advanced Custom Fields Pro versions prior to 5.11 contain a missing authorization vulnerability in browsing database which may allow a user to browse… CWE-862
 Missing Authorization
CVE-2021-20865 2024-11-21 14:47 2021-12-13 Show GitHub Exploit DB Packet Storm
195014 5.4 MEDIUM
Network
elecom wrc-2533ghbk-i_firmware Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2021-20858 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195015 8.8 HIGH
Adjacent
elecom wrc-1167gst2_firmware
wrc-1167gst2a_firmware
wrc-1167gst2h_firmware
wrc-2533gs2-b_firmware
wrc-2533gs2-w_firmware
wrc-1750gs_firmware
wrc-1750gsv_firmware
wrc-1900gst_firmware
Improper access control vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS2-B firmware … NVD-CWE-Other
CVE-2021-20864 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195016 8.0 HIGH
Adjacent
elecom wrc-1167gst2_firmware
wrc-1167gst2a_firmware
wrc-1167gst2h_firmware
wrc-2533gs2-b_firmware
wrc-2533gs2-w_firmware
wrc-1750gs_firmware
wrc-1750gsv_firmware
wrc-1900gst_firmware
OS command injection vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS2-B firmware v1.… CWE-78
OS Command 
CVE-2021-20863 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195017 4.3 MEDIUM
Adjacent
elecom wrc-1167gst2_firmware
wrc-1167gst2a_firmware
wrc-1167gst2h_firmware
wrc-2533gs2-b_firmware
wrc-2533gs2-w_firmware
wrc-1750gs_firmware
wrc-1750gsv_firmware
wrc-1900gst_firmware
Improper access control vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS2-B firmware … NVD-CWE-Other
CVE-2021-20862 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195018 8.8 HIGH
Adjacent
elecom wrc-1167gst2_firmware
wrc-1167gst2a_firmware
wrc-1167gst2h_firmware
wrc-2533gs2-b_firmware
wrc-2533gs2-w_firmware
wrc-1750gs_firmware
wrc-1750gsv_firmware
wrc-1900gst_firmware
Improper access control vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS2-B firmw… NVD-CWE-Other
CVE-2021-20861 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195019 5.4 MEDIUM
Network
elecom wrc-2533ghbk-i_firmware Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2021-20857 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm
195020 5.4 MEDIUM
Network
elecom wrh-733gbk_firmware
wrh-733gwh_firmware
Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a remote authenticated attacker to inject an arbitrar… CWE-79
Cross-site Scripting
CVE-2021-20856 2024-11-21 14:47 2021-12-1 Show GitHub Exploit DB Packet Storm