Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230781 10 危険 シックス・アパート株式会社 - Movable Type Pro などにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-0752 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
230782 5 警告 Yaws - Yaws におけるサービス運用妨害 (メモリ消費およびクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0751 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
230783 7.5 危険 tombstone - txtSQL 用の smNews example スクリプトにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0750 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
230784 4.3 警告 Pebble - Pebble におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0736 2012-12-20 19:10 2009-02-25 Show GitHub Exploit DB Packet Storm
230785 7.5 危険 tony iha kazungu - taifajobs の jobdetails.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0727 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
230786 7.5 危険 potato-scripts - Potato News の admin.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-0722 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
230787 5 警告 vlad alexa mancini - PHPFootball の filter.php におけるパスワードハッシュを取得される脆弱性 CWE-200
情報漏えい
CVE-2009-0711 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
230788 4.3 警告 vlad alexa mancini - PHPFootball におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0710 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
230789 7.5 危険 vlad alexa mancini - PHPFootball の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0709 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
230790 6.8 警告 SemanticScuttle - SemanticScuttle におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-0708 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196211 7.5 HIGH
Network
digium certified_asterisk
asterisk
An issue was discovered in Sangoma Asterisk 16.x before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6. When re-negotiating for T.38, if the initial remo… NVD-CWE-noinfo
CVE-2021-26717 2024-11-21 14:56 2021-02-19 Show GitHub Exploit DB Packet Storm
196212 7.8 HIGH
Local
avahi
debian
avahi
debian_linux
avahi-daemon-check-dns.sh in the Debian avahi package through 0.8-4 is executed as root via /etc/network/if-up.d/avahi-daemon, and allows a local attacker to cause a denial of service or create arbit… CWE-59
Link Following
CVE-2021-26720 2024-11-21 14:56 2021-02-18 Show GitHub Exploit DB Packet Storm
196213 9.8 CRITICAL
Network
phpgurukul car_rental_portal PHPGurukul Car Rental Project version 2.0 suffers from a remote shell upload vulnerability in changeimage1.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-26809 2024-11-21 14:56 2021-02-18 Show GitHub Exploit DB Packet Storm
196214 5.3 MEDIUM
Network
apache airflow The lineage endpoint of the deprecated Experimental API was not protected by authentication in Airflow 2.0.0. This allowed unauthenticated users to hit that endpoint. This is low-severity issue as th… CWE-306
Missing Authentication for Critical Function
CVE-2021-26697 2024-11-21 14:56 2021-02-18 Show GitHub Exploit DB Packet Storm
196215 6.5 MEDIUM
Network
apache airflow Improper Access Control on Configurations Endpoint for the Stable API of Apache Airflow allows users with Viewer or User role to get Airflow Configurations including sensitive information even when `… NVD-CWE-Other
CVE-2021-26559 2024-11-21 14:56 2021-02-18 Show GitHub Exploit DB Packet Storm
196216 9.8 CRITICAL
Network
phpgurukul teachers_record_management_system Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vulnerability can be exploited by a remote unauthentic… CWE-89
SQL Injection
CVE-2021-26822 2024-11-21 14:56 2021-02-16 Show GitHub Exploit DB Packet Storm
196217 9.9 CRITICAL
Network
nedi nedi NeDi 1.9C allows an authenticated user to inject PHP code in the System Files function on the endpoint /System-Files.php via the txt HTTP POST parameter. This allows an attacker to obtain access to t… CWE-863
 Incorrect Authorization
CVE-2021-26753 2024-11-21 14:56 2021-02-13 Show GitHub Exploit DB Packet Storm
196218 8.8 HIGH
Network
nedi nedi NeDi 1.9C allows an authenticated user to execute operating system commands in the Nodes Traffic function on the endpoint /Nodes-Traffic.php via the md or ag HTTP GET parameter. This allows an attack… CWE-78
OS Command 
CVE-2021-26752 2024-11-21 14:56 2021-02-13 Show GitHub Exploit DB Packet Storm
196219 8.8 HIGH
Network
nedi nedi NeDi 1.9C allows an authenticated user to perform a SQL Injection in the Monitoring History function on the endpoint /Monitoring-History.php via the det HTTP GET parameter. This allows an attacker to… CWE-89
SQL Injection
CVE-2021-26751 2024-11-21 14:56 2021-02-13 Show GitHub Exploit DB Packet Storm
196220 8.8 HIGH
Network
smartfoxserver smartfoxserver An issue was discovered in SmartFoxServer 2.17.0. An attacker can execute arbitrary Python code, and bypass the javashell.py protection mechanism, by creating /config/ConsoleModuleUnlock.txt and edit… CWE-94
Code Injection
CVE-2021-26551 2024-11-21 14:56 2021-02-10 Show GitHub Exploit DB Packet Storm