Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 4:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229851 8.8 危険 visagesoft - VISAGESOFT eXPert PDF Viewer X ActiveX コントロールにおける任意のファイルを上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-4919 2012-12-20 18:52 2008-11-4 Show GitHub Exploit DB Packet Storm
229852 4.3 警告 SonicWALL - SonicWALL Pro 2040 などで使用されている SonicWALL SonicOS Enhanced におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4918 2012-12-20 18:52 2008-11-4 Show GitHub Exploit DB Packet Storm
229853 7.5 危険 rs maxsoft - RS MAXSOFT の fotogalerie モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4912 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229854 10 危険 サン・マイクロシステムズ - Sun Java Web Start の BasicService におけるクライアントマシン上で任意のプログラムを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4910 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229855 7.5 危険 w1n78 - e107 用の Lyrics プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4906 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229856 5 警告 typosphere - Typo におけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2008-4905 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229857 6 警告 typosphere - Typo の "ページを管理する" 機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4904 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229858 4.3 警告 typosphere - Typo のコメントを残す機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4903 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229859 7.5 危険 scripts frenzy - Article Publisher Pro の contact_author.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4902 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
229860 7.5 危険 scripts frenzy - Article Publisher Pro の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4901 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195691 7.8 HIGH
Local
f5 nginx_controller The NGINX Controller 2.0.0 thru 2.9.0 and 3.x before 3.15.0 Administrator password may be exposed in the systemd.txt file that is included in the NGINX support package. CWE-522
 Insufficiently Protected Credentials
CVE-2021-23019 2024-11-21 14:51 2021-06-1 Show GitHub Exploit DB Packet Storm
195692 7.7 HIGH
Network
f5
openresty
fedoraproject
netapp
oracle
nginx
openresty
fedora
ontap_select_deploy_administration_utility
communications_operations_monitor
enterprise_session_border_controller
communications_session_border_controller
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process cra… - CVE-2021-23017 2024-11-21 14:51 2021-06-1 Show GitHub Exploit DB Packet Storm
195693 7.4 HIGH
Network
f5 nginx_controller Intra-cluster communication does not use TLS. The services within the NGINX Controller 3.x before 3.4.0 namespace are using cleartext protocols inside the cluster. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2021-23018 2024-11-21 14:51 2021-06-1 Show GitHub Exploit DB Packet Storm
195694 6.1 MEDIUM
Network
trailing-slash_project trailing-slash The package trailing-slash before 2.0.1 are vulnerable to Open Redirect via the use of trailing double slashes in the URL when accessing the vulnerable endpoint (such as https://example.com//attacker… CWE-601
Open Redirect
CVE-2021-23387 2024-11-21 14:51 2021-05-25 Show GitHub Exploit DB Packet Storm
195695 6.5 MEDIUM
Network
dns-packet_project dns-packet This affects the package dns-packet before 5.2.2. It creates buffers with allocUnsafe and does not always fill them before forming network packets. This can expose internal application memory over un… CWE-909
 Missing Initialization of Resource
CVE-2021-23386 2024-11-21 14:51 2021-05-21 Show GitHub Exploit DB Packet Storm
195696 5.4 MEDIUM
Network
koa-remove-trailing-slashes_project koa-remove-trailing-slashes The package koa-remove-trailing-slashes before 2.0.2 are vulnerable to Open Redirect via the use of trailing double slashes in the URL when accessing the vulnerable endpoint (such as https://example.… CWE-601
Open Redirect
CVE-2021-23384 2024-11-21 14:51 2021-05-18 Show GitHub Exploit DB Packet Storm
195697 5.5 MEDIUM
Local
argoproj argo_cd Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause leaked secret data into web UI error messages and logs. This issue affects Argo C… CWE-209
Information Exposure Through an Error Message
CVE-2021-23135 2024-11-21 14:51 2021-05-13 Show GitHub Exploit DB Packet Storm
195698 7.8 HIGH
Local
linux
fedoraproject
debian
linux_kernel
fedora
debian_linux
Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configurations, the issue can only be triggered by a privi… CWE-416
 Use After Free
CVE-2021-23134 2024-11-21 14:51 2021-05-13 Show GitHub Exploit DB Packet Storm
195699 7.8 HIGH
Local
mcafee total_protection Privilege Escalation vulnerability in the File Lock component of McAfee Total Protection (MTP) prior to 16.0.32 allows a local user to gain elevated privileges by manipulating a symbolic link in the … CWE-59
Link Following
CVE-2021-23872 2024-11-21 14:51 2021-05-12 Show GitHub Exploit DB Packet Storm
195700 5.3 MEDIUM
Network
f5 big-ip_access_policy_manager On BIG-IP APM versions 15.1.x before 15.1.3, 14.1.x before 14.1.4.1, 13.1.x before 13.1.4, and all versions of 16.0.x, 12.1.x, and 11.6.x, an attacker may be able to bypass APM's internal restriction… NVD-CWE-noinfo
CVE-2021-23016 2024-11-21 14:51 2021-05-11 Show GitHub Exploit DB Packet Storm