Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231411 7.5 危険 racer - Racer の client などにおけるバッファオーバーフローの脆弱性 - CVE-2007-4370 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231412 5 警告 sote - SOTEeSKLEP の go/_files におけるディレクトリトラバーサルの脆弱性 - CVE-2007-4369 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231413 5 警告 wengo - WengoPhone におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4366 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231414 6.8 警告 prozilla - Prozilla Webring の category.php における SQL インジェクションの脆弱性 - CVE-2007-4362 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231415 6.8 警告 skilmatch staffing systems - SkilMatch Staffing Systems JobLister3 における SQL インジェクションの脆弱性 - CVE-2007-4359 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231416 4.3 警告 zoidcom - Zoidcom におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4358 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
231417 7.5 危険 phpcentral - PHPCentral Login の include.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4342 2012-12-20 18:33 2007-08-14 Show GitHub Exploit DB Packet Storm
231418 7.5 危険 phpdvd - phpDVD の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-4340 2012-12-20 18:33 2007-08-14 Show GitHub Exploit DB Packet Storm
231419 7.5 危険 phpcentral - PHPCentral Poll Script における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4339 2012-12-20 18:33 2007-08-14 Show GitHub Exploit DB Packet Storm
231420 5.8 警告 streamripper - Streamripper の lib/http.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4337 2012-12-20 18:33 2007-08-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197731 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8009w_firmware
apq8017_firmware
apq8053_firmware
apq8064au_firmware
apq8096au_firmware
aqt1000_firmware
ar8031_firmware
ar8035_firmware
ar8151_firmware<…
Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap… CWE-416
 Use After Free
CVE-2021-1905 2024-11-21 14:45 2021-05-7 Show GitHub Exploit DB Packet Storm
197732 7.8 HIGH
Local
qualcomm apq8009w_firmware
apq8017_firmware
apq8053_firmware
aqt1000_firmware
ar8031_firmware
ar8035_firmware
ar9380_firmware
csr8811_firmware
csra6620_firmware
csra6640_firmware
A possible use-after-free occurrence in audio driver can happen when pointers are not properly handled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdr… CWE-416
 Use After Free
CVE-2021-1891 2024-11-21 14:45 2021-05-7 Show GitHub Exploit DB Packet Storm
197733 7.5 HIGH
Network
buffalo wsr-2533dhpl2-bk_firmware
wsr-2533dhp3-bk_firmware
The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not properly restrict access to sensitive information from an unauthorized actor. CWE-287
Improper Authentication
CVE-2021-20092 2024-11-21 14:45 2021-04-30 Show GitHub Exploit DB Packet Storm
197734 8.8 HIGH
Network
buffalo wsr-2533dhpl2-bk_firmware
wsr-2533dhp3-bk_firmware
The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not properly sanitize user input. An authenticated remote attacker could leverage thi… NVD-CWE-noinfo
CVE-2021-20091 2024-11-21 14:45 2021-04-30 Show GitHub Exploit DB Packet Storm
197735 9.8 CRITICAL
Network
buffalo wsr-2533dhpl2-bk_firmware
wsr-2533dhp3-bk_firmware
A path traversal vulnerability in the web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 could allow unauthenticated remote attackers to bypass… CWE-22
Path Traversal
CVE-2021-20090 2024-11-21 14:45 2021-04-30 Show GitHub Exploit DB Packet Storm
197736 8.8 HIGH
Network
purl_project purl Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in purl 2.3.2 allows a malicious user to inject properties into Object.prototype. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-20089 2024-11-21 14:45 2021-04-24 Show GitHub Exploit DB Packet Storm
197737 8.8 HIGH
Network
jquery-bbq_project jquery-bbq Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in jquery-bbq 1.2.1 allows a malicious user to inject properties into Object.prototype. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-20086 2024-11-21 14:45 2021-04-24 Show GitHub Exploit DB Packet Storm
197738 8.8 HIGH
Network
backbone-query-parameters_project backbone-query-parameters Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in backbone-query-parameters 0.4.0 allows a malicious user to inject properties into Object.prototype. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-20085 2024-11-21 14:45 2021-04-24 Show GitHub Exploit DB Packet Storm
197739 8.8 HIGH
Network
jquery-plugin-query-object_project jquery-plugin-query-object Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in jquery-plugin-query-object 2.2.3 allows a malicious user to inject properties into Object.prototype. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-20083 2024-11-21 14:45 2021-04-24 Show GitHub Exploit DB Packet Storm
197740 8.8 HIGH
Network
mootools mootools-more Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in mootools-more 1.6.0 allows a malicious user to inject properties into Object.prototype. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-20088 2024-11-21 14:45 2021-04-24 Show GitHub Exploit DB Packet Storm