Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228861 6 警告 TWiki - TWiki におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-1339 2012-12-20 19:10 2009-04-5 Show GitHub Exploit DB Packet Storm
228862 5 警告 サン・マイクロシステムズ - Sun Java System Directory Server および Enterprise Edition の Online Help 機能におけるファイルの一部のコンテンツを取得される脆弱性 CWE-noinfo
情報不足
CVE-2009-1332 2012-12-20 19:10 2009-04-15 Show GitHub Exploit DB Packet Storm
228863 7.5 危険 webfileexplorer - Web File Explorer の body.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1323 2012-12-20 19:10 2009-04-17 Show GitHub Exploit DB Packet Storm
228864 4.3 警告 zazzle - Zazzle Store Builder の include/zstore.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1320 2012-12-20 19:10 2009-04-17 Show GitHub Exploit DB Packet Storm
228865 10 危険 webfileexplorer - Web File Explorer の body.asp における任意のファイルを作成される脆弱性 CWE-noinfo
情報不足
CVE-2009-1314 2012-12-20 19:10 2009-04-16 Show GitHub Exploit DB Packet Storm
228866 5 警告 Rapid Leech - Rapidleech の upload.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1089 2012-12-20 19:10 2009-03-25 Show GitHub Exploit DB Packet Storm
228867 9.3 危険 pplive - PPLive の PPLive.exe における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1087 2012-12-20 19:10 2009-03-25 Show GitHub Exploit DB Packet Storm
228868 5 警告 Piwik - Piwik における API 鍵を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1085 2012-12-20 19:10 2009-03-25 Show GitHub Exploit DB Packet Storm
228869 6.4 警告 サン・マイクロシステムズ - Sun Java System IdM における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1084 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228870 6.9 警告 PulseAudio - PulseAudio の core-util.c における任意のファイルのパーミッションを変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2009-1299 2012-12-20 19:10 2010-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195101 3.7 LOW
Network
openssl
oracle
siemens
openssl
business_intelligence
jd_edwards_world_security
enterprise_manager_for_storage_management
enterprise_manager_ops_center
zfs_storage_appliance_kit
graalvm
sinec_ins
OpenSSL 1.0.2 supports SSLv2. If a client attempts to negotiate SSLv2 with a server that is configured to support both SSLv2 and more recent SSL and TLS versions then a check is made for a version ro… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-23839 2024-11-21 14:51 2021-02-17 Show GitHub Exploit DB Packet Storm
195102 7.2 HIGH
Network
microsoft qlib This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function. CWE-502
 Deserialization of Untrusted Data
CVE-2021-23338 2024-11-21 14:51 2021-02-16 Show GitHub Exploit DB Packet Storm
195103 7.2 HIGH
Network
lodash
oracle
netapp
siemens
lodash
primavera_unifier
peoplesoft_enterprise_peopletools
retail_customer_management_and_segmentation_foundation
communications_services_gatekeeper
enterprise_communications_broker
Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. CWE-94
Code Injection
CVE-2021-23337 2024-11-21 14:51 2021-02-15 Show GitHub Exploit DB Packet Storm
195104 5.9 MEDIUM
Network
python
fedoraproject
debian
netapp
djangoproject
oracle
python
fedora
debian_linux
cloud_backup
snapcenter
ontap_select_deploy_administration_utility
inventory_collect_tool
django
zfs_storage_appliance
enterprise_manager_ops_cen…
The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to Web Cache Poisoning via urllib.parse.pars… CWE-444
HTTP Request Smuggling
CVE-2021-23336 2024-11-21 14:51 2021-02-15 Show GitHub Exploit DB Packet Storm
195105 6.1 MEDIUM
Network
f5 big-ip_application_security_manager
big-ip_advanced_web_application_firewall
On BIG-IP Advanced WAF and ASM version 15.1.x before 15.1.0.2, 15.0.x before 15.0.1.4, 14.1.x before 14.1.2.5, 13.1.x before 13.1.3.4, 12.1.x before 12.1.5.2, and 11.6.x before 11.6.5.2, when receivi… CWE-601
Open Redirect
CVE-2021-22984 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
195106 8.3 HIGH
Network
f5 big-ip_local_traffic_manager
big-ip_advanced_firewall_manager
big-ip_application_acceleration_manager
big-ip_analytics
big-ip_access_policy_manager
big-ip_application_security_manager<…
On BIG-IP version 16.0.x before 16.0.1, 15.1.x before 15.1.1, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.5, and all 12.1.x and 11.6.x versions, undisclosed endpoints in iControl REST allow for a re… CWE-79
Cross-site Scripting
CVE-2021-22978 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
195107 7.5 HIGH
Network
f5 big-ip_global_traffic_manager
big-ip_domain_name_system
big-ip_advanced_web_application_firewall
big-ip_application_security_manager
big-ip_access_policy_manager
big-ip_link_controller…
On BIG-IP version 16.0.0-16.0.1 and 14.1.2.4-14.1.3, cooperation between malicious HTTP client code and a malicious server may cause TMM to restart and generate a core file. Note: Software versions w… NVD-CWE-noinfo
CVE-2021-22977 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
195108 7.5 HIGH
Network
f5 big-ip_application_security_manager On BIG-IP APM version 16.0.x before 16.0.1.1, under certain conditions, when processing VPN traffic with APM, TMM consumes excessive memory. A malicious, authenticated VPN user may abuse this to perf… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-22985 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
195109 5.4 MEDIUM
Network
f5 big-ip_advanced_firewall_manager On BIG-IP AFM version 15.1.x before 15.1.1, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.5, authenticated users accessing the Configuration utility for AFM are vulnerable to a cross-site scriptin… CWE-79
Cross-site Scripting
CVE-2021-22983 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
195110 7.2 HIGH
Network
f5 big-ip_domain_name_system
big-ip_global_traffic_manager
On BIG-IP DNS and GTM version 13.1.x before 13.1.0.4, and all versions of 12.1.x and 11.6.x, big3d does not securely handle and parse certain payloads resulting in a buffer overflow. Note: Software v… CWE-120
Classic Buffer Overflow
CVE-2021-22982 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm