Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230041 5 警告 Pligg
PHPNUKE
- Pligg などの製品の CAPTCHA 実装における CAPTCHA テストを通過される脆弱性 CWE-189
CWE-264
CVE-2008-3573 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230042 4.3 警告 Pligg - Pligg の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3572 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230043 7.8 危険 Xerox - Xerox Phaser におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3571 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230044 7.5 危険 unak - UNAK-CMS の fckeditor/editor/filemanager/browser/default/connectors/php/connector.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3568 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230045 4.3 警告 ZoneO-soft - ZoneO-soft freeForum におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3566 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230046 7.5 危険 Plogger Project - Plogger における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3563 2012-12-20 18:52 2008-07-29 Show GitHub Exploit DB Packet Storm
230047 6.8 警告 powergap - Powergap Shopsystem の s03.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3561 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
230048 6.8 警告 wsnlinks - WSN Forum などの index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3555 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
230049 10 危険 サン・マイクロシステムズ - Nokia Series 40 3rd エディションデバイスにおける任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3553 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
230050 10 危険 サン・マイクロシステムズ - Sun Wireless Toolkit で同梱されている Sun Java Platform Micro Edition における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-3551 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195981 7.5 HIGH
Network
huawei magic_ui
emui
harmonyos
There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows. CWE-190
 Integer Overflow or Wraparound
CVE-2021-22319 2024-11-21 14:49 2022-02-26 Show GitHub Exploit DB Packet Storm
195982 7.5 HIGH
Network
vmware esxi
cloud_foundation
ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to ESXi may exploit this issue to create a denial-of-service condition by overwhelm… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-22050 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195983 7.5 HIGH
Network
vmware esxi
fusion
VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled. A malicious actor with access to settingsd, may exploit this issue to escal… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-22043 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195984 7.8 HIGH
Local
vmware esxi
cloud_foundation
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to ac… CWE-863
 Incorrect Authorization
CVE-2021-22042 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195985 6.7 MEDIUM
Local
vmware fusion
esxi
cloud_foundation
workstation
VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issu… NVD-CWE-noinfo
CVE-2021-22041 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195986 6.7 MEDIUM
Local
vmware esxi
fusion
workstation_player
cloud_foundation
workstation_pro
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this is… CWE-416
 Use After Free
CVE-2021-22040 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195987 5.3 MEDIUM
Network
ti simplelink_cc32xx_software_development_kit
cc3100_firmware
cc3200_firmware
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an… CWE-908
 Use of Uninitialized Resource
CVE-2021-21966 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195988 7.8 HIGH
Local
hancom hancom_office_2020 A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and poten… CWE-787
 Out-of-bounds Write
CVE-2021-21958 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195989 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22288 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195990 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22286 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm