Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230991 5 警告 toddwoolums - Todd Woolums ASP News Management におけるニュース項目を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5274 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
230992 7.5 危険 Powie - pSys の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5269 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
230993 6.8 警告 tntforum - TNT Forum の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5265 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
230994 4.3 警告 tornado - Tornado Knowledge Retrieval System の searcher.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5264 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
230995 4.4 警告 virtualox - Sun Innotek VirtualBox の ipcdUnix.cpp における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5256 2012-12-20 18:52 2008-11-26 Show GitHub Exploit DB Packet Storm
230996 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5248 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
230997 4.3 警告 Xine - xine-lib の demux_real.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-5247 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
230998 9.3 危険 Xine - xine-lib におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5246 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
230999 9.3 危険 Xine - xine-lib における脆弱性 CWE-119
バッファエラー
CVE-2008-5245 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
231000 10 危険 Xine - xine-lib における脆弱性 CWE-noinfo
情報不足
CVE-2008-5244 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199931 6.1 MEDIUM
Network
oauth2_proxy_project oauth2_proxy OAuth2 Proxy is an open-source reverse proxy and static file server that provides authentication using Providers (Google, GitHub, and others) to validate accounts by email, domain or group. In OAuth2… - CVE-2021-21291 2024-11-21 14:47 2021-02-3 Show GitHub Exploit DB Packet Storm
199932 8.3 HIGH
Network
mechanize_project
fedoraproject
debian
mechanize
fedora
debian_linux
Mechanize is an open-source ruby library that makes automated web interaction easy. In Mechanize from version 2.0.0 and before version 2.7.7 there is a command injection vulnerability. Affected versi… CWE-78
OS Command 
CVE-2021-21289 2024-11-21 14:47 2021-02-3 Show GitHub Exploit DB Packet Storm
199933 6.8 MEDIUM
Adjacent
docker
debian
netapp
docker
debian_linux
e-series_santricity_os_controller
In Docker before versions 9.03.15, 20.10.3 there is a vulnerability involving the --userns-remap option in which access to remapped root allows privilege escalation to real root. When using "--userns… CWE-22
Path Traversal
CVE-2021-21284 2024-11-21 14:47 2021-02-3 Show GitHub Exploit DB Packet Storm
199934 7.7 HIGH
Network
minio minio MinIO is a High Performance Object Storage released under Apache License v2.0. In MinIO before version RELEASE.2021-01-30T00-20-58Z there is a server-side request forgery vulnerability. The target ap… - CVE-2021-21287 2024-11-21 14:47 2021-02-2 Show GitHub Exploit DB Packet Storm
199935 8.8 HIGH
Network
wwbn avideo AVideo Platform is an open-source Audio and Video platform. It is similar to a self-hosted YouTube. In AVideo Platform before version 10.2 there is an authorization bypass vulnerability which enables… - CVE-2021-21286 2024-11-21 14:47 2021-02-2 Show GitHub Exploit DB Packet Storm
199936 8.8 HIGH
Network
peerigon angular-expressions angular-expressions is "angular's nicest part extracted as a standalone module for the browser and node". In angular-expressions before version 1.1.2 there is a vulnerability which allows Remote Code… CWE-94
Code Injection
CVE-2021-21277 2024-11-21 14:47 2021-02-2 Show GitHub Exploit DB Packet Storm
199937 9.3 CRITICAL
Network
polrproject polr Polr is an open source URL shortener. in Polr before version 2.3.0, a vulnerability in the setup process allows attackers to gain admin access to site instances, even if they do not possess an existi… - CVE-2021-21276 2024-11-21 14:47 2021-02-2 Show GitHub Exploit DB Packet Storm
199938 5.0 MEDIUM
Network
openhab openhab openHAB is a vendor and technology agnostic open source automation software for your home. In openHAB before versions 2.5.12 and 3.0.1 the XML external entity (XXE) attack allows attackers in the sam… - CVE-2021-21266 2024-11-21 14:47 2021-02-2 Show GitHub Exploit DB Packet Storm
199939 6.5 MEDIUM
Network
ckeditor ckeditor5 CKEditor 5 is an open source rich text editor framework with a modular architecture. The CKEditor 5 Markdown plugin (@ckeditor/ckeditor5-markdown-gfm) before version 25.0.0 has a regex denial of serv… - CVE-2021-21254 2024-11-21 14:47 2021-01-30 Show GitHub Exploit DB Packet Storm
199940 9.8 CRITICAL
Network
rsshub rsshub RSSHub is an open source, easy to use, and extensible RSS feed generator. In RSSHub before version 7f1c430 (non-semantic versioning) there is a risk of code injection. Some routes use `eval` or `Func… - CVE-2021-21278 2024-11-21 14:47 2021-01-27 Show GitHub Exploit DB Packet Storm