Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231741 7.5 危険 Smarty - Smarty の libs/Smarty_Compiler.class.php における任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4811 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
231742 7.5 危険 Smarty - Smarty の libs/Smarty_Compiler.class.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-4810 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
231743 4.3 警告 simple php scripts - Simple PHP Scripts gallery の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4803 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
231744 4.3 警告 simple php scripts - Simple PHP Scripts ブログの complete.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4802 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
231745 9.3 危険 webgui - WebGUI の lib/WebGUI/Asset.pm における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-4798 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
231746 10 危険 tguzip - TUGzip におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4779 2012-12-20 18:52 2008-10-29 Show GitHub Exploit DB Packet Storm
231747 4.3 警告 Wojtek Kaniewski - libgadu におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-4776 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
231748 2.6 注意 The phpMyAdmin Project - phpMyAdmin の pmd_pdf.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4775 2012-12-20 18:52 2008-10-28 Show GitHub Exploit DB Packet Storm
231749 4.3 警告 questwork - QuestCMS の main/main.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4774 2012-12-20 18:52 2008-10-28 Show GitHub Exploit DB Packet Storm
231750 5 警告 questwork - QuestCMS の main/main.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4773 2012-12-20 18:52 2008-10-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199321 6.5 MEDIUM
Network
gitlab gitlab A potential DOS vulnerability was discovered in GitLab EE starting with version 12.6 due to lack of pagination in dependencies API. NVD-CWE-noinfo
CVE-2021-22259 2024-11-21 14:49 2021-10-5 Show GitHub Exploit DB Packet Storm
199322 9.4 CRITICAL
Network
abb
busch-jaeger
mybuildings
mybusch-jaeger
The vulnerability origins in the commissioning process where an attacker of the ControlTouch can enter a serial number in a specific way to transfer the device virtually into her/his my.busch-jaeger.… NVD-CWE-noinfo
CVE-2021-22272 2024-11-21 14:49 2021-09-27 Show GitHub Exploit DB Packet Storm
199323 5.5 MEDIUM
Local
abb system_access_point_2.0_firmware
system_access_point_127v_firmware
wl-system_access_point_127v_firmware
wl-system_access_point_firmware
wl-system_access_point_2.0_firmware
The vulnerability allows a successful attacker to bypass the integrity check of FW uploaded to the free@home System Access Point. CWE-354
 Improper Validation of Integrity Check Value
CVE-2021-22276 2024-11-21 14:49 2021-09-24 Show GitHub Exploit DB Packet Storm
199324 9.8 CRITICAL
Network
dlink dir-3040_firmware An information disclosure vulnerability exists in the WiFi Smart Mesh functionality of D-LINK DIR-3040 1.13B03. A specially-crafted network request can lead to command execution. An attacker can conn… CWE-798
 Use of Hard-coded Credentials
CVE-2021-21913 2024-11-21 14:49 2021-09-24 Show GitHub Exploit DB Packet Storm
199325 5.5 MEDIUM
Local
vmware vcenter_server
cloud_foundation
The vCenter Server contains a denial-of-service vulnerability in the Analytics service. Successful exploitation of this issue may allow an attacker to create a denial-of-service condition on vCenter … NVD-CWE-noinfo
CVE-2021-22020 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm
199326 7.5 HIGH
Network
vmware vcenter_server
cloud_foundation
The vCenter Server contains a denial-of-service vulnerability in VAPI (vCenter API) service. A malicious actor with network access to port 5480 on vCenter Server may exploit this issue by sending a s… NVD-CWE-noinfo
CVE-2021-22019 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm
199327 6.5 MEDIUM
Network
vmware vcenter_server
cloud_foundation
The vCenter Server contains an arbitrary file deletion vulnerability in a VMware vSphere Life-cycle Manager plug-in. A malicious actor with network access to port 9087 on vCenter Server may exploit t… NVD-CWE-noinfo
CVE-2021-22018 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm
199328 5.3 MEDIUM
Network
vmware vcenter_server Rhttproxy as used in vCenter Server contains a vulnerability due to improper implementation of URI normalization. A malicious actor with network access to port 443 on vCenter Server may exploit this … NVD-CWE-noinfo
CVE-2021-22017 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm
199329 6.1 MEDIUM
Network
vmware vcenter_server
cloud_foundation
The vCenter Server contains a reflected cross-site scripting vulnerability due to a lack of input sanitization. An attacker may exploit this issue to execute malicious scripts by tricking a victim in… CWE-79
Cross-site Scripting
CVE-2021-22016 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm
199330 7.8 HIGH
Local
vmware vcenter_server
cloud_foundation
The vCenter Server contains multiple local privilege escalation vulnerabilities due to improper permissions of files and directories. An authenticated local user with non-administrative privilege may… CWE-552
 Files or Directories Accessible to External Parties
CVE-2021-22015 2024-11-21 14:49 2021-09-23 Show GitHub Exploit DB Packet Storm