Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230511 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory におけるデータベースのバックアップを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6940 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230512 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6939 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230513 7.5 危険 sansuart - Sanus|artificium Free simple guestbook PHP における messages.txt へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-6934 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
230514 6.5 警告 phpstore - PHPStore Job Search における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6931 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
230515 6.5 警告 phpstore - PHPStore Real Estate における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6930 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
230516 6.5 警告 phpstore - PHPStore Auto Classifieds における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6929 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
230517 6.5 警告 phpstore - PHPStore Complete Classifieds における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6928 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
230518 4.3 警告 Zenphoto - Zenphoto の function.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6925 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
230519 9.3 危険 Youngzsoft - CMailServer の CMailCOM.dll におけるスタックベースのバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6922 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
230520 7.5 危険 w2b - phpAdBoard の index.php における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6921 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195981 6.5 MEDIUM
Network
kubernetes kubernetes A security issue was discovered in kube-apiserver that could allow node updates to bypass a Validating Admission Webhook. Clusters are only affected by this vulnerability if they run a Validating Adm… NVD-CWE-Other
CVE-2021-25735 2024-11-21 14:55 2021-09-6 Show GitHub Exploit DB Packet Storm
195982 7.5 HIGH
Network
apache ofbiz In Apache Ofbiz, versions v17.12.01 to v17.12.07 implement a try catch exception to handle errors at multiple locations but leaks out sensitive table info which may aid the attacker for further recon… CWE-209
Information Exposure Through an Error Message
CVE-2021-25958 2024-11-21 14:55 2021-08-30 Show GitHub Exploit DB Packet Storm
195983 9.8 CRITICAL
Network
atlassian confluence_server
confluence_data_center
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data… CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2021-26084 2024-11-21 14:55 2021-08-30 Show GitHub Exploit DB Packet Storm
195984 9.1 CRITICAL
Network
joomla joomla\! An issue was discovered in Joomla! 4.0.0. The media manager does not correctly check the user's permissions before executing a file deletion command. CWE-863
 Incorrect Authorization
CVE-2021-26040 2024-11-21 14:55 2021-08-25 Show GitHub Exploit DB Packet Storm
195985 8.8 HIGH
Network
dolibarr dolibarr In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low privileged attacker can reset the password of any user in the application using… CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2021-25957 2024-11-21 14:55 2021-08-18 Show GitHub Exploit DB Packet Storm
195986 7.2 HIGH
Network
dolibarr dolibarr
dolibarr_erp\/crm
In “Dolibarr” application, v3.3.beta1_20121221 to v13.0.2 have “Modify” access for admin level users to change other user’s details but fails to validate already existing “Login” name, while renaming… NVD-CWE-Other
CVE-2021-25956 2024-11-21 14:55 2021-08-18 Show GitHub Exploit DB Packet Storm
195987 5.3 MEDIUM
Network
atlassian jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to read particular files via a path traversal vulnerability in the /WEB-INF/web.xml endpoint. The affected versions a… CWE-22
Path Traversal
CVE-2021-26086 2024-11-21 14:55 2021-08-16 Show GitHub Exploit DB Packet Storm
195988 9.0 CRITICAL
Network
dolibarr dolibarr In “Dolibarr ERP CRM”, WYSIWYG Editor module, v2.8.1 to v13.0.2 are affected by a stored XSS vulnerability that allows low privileged application users to store malicious scripts in the “Private Note… CWE-79
Cross-site Scripting
CVE-2021-25955 2024-11-21 14:55 2021-08-16 Show GitHub Exploit DB Packet Storm
195989 7.5 HIGH
Network
siemens automation_license_manager A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0 SP9 Update 2). Sending specially crafted packets to port 4410/tcp… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-25659 2024-11-21 14:55 2021-08-10 Show GitHub Exploit DB Packet Storm
195990 4.3 MEDIUM
Network
dolibarr dolibarr In “Dolibarr” application, 2.8.1 to 13.0.4 don’t restrict or incorrectly restricts access to a resource from an unauthorized actor. A low privileged attacker can modify the Private Note which only an… CWE-863
 Incorrect Authorization
CVE-2021-25954 2024-11-21 14:55 2021-08-10 Show GitHub Exploit DB Packet Storm