Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231941 7.5 危険 tpl design - tplSoccerSite における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3251 2012-12-20 18:52 2008-07-21 Show GitHub Exploit DB Packet Storm
231942 10 危険 ppmate - PPMate の PPMedia Class ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3242 2012-12-20 18:52 2008-07-21 Show GitHub Exploit DB Packet Storm
231943 7.5 危険 ultrastats - UltraStats の players-detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3241 2012-12-20 18:52 2008-07-21 Show GitHub Exploit DB Packet Storm
231944 9.3 危険 phpizabi - PHPizabi の system/v_cron_proc.php における任意のコードをアップロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-3239 2012-12-20 18:52 2008-07-21 Show GitHub Exploit DB Packet Storm
231945 4.3 警告 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3233 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
231946 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3231 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
231947 6.9 警告 swapoff - op におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3229 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
231948 10 危険 phpBB - phpBB における脆弱性 CWE-noinfo
情報不足
CVE-2008-3224 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
231949 6.8 警告 PowerDNS - PowerDNS Recursor における DNS を偽装される脆弱性 CWE-189
数値処理の問題
CVE-2008-3217 2012-12-20 18:52 2008-04-25 Show GitHub Exploit DB Packet Storm
231950 7.8 危険 thekelleys - dnsmasq におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3214 2012-12-20 18:52 2008-07-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200011 5.3 MEDIUM
Network
jenkins support_core Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" information, which can include the session ID … CWE-200
Information Exposure
CVE-2021-21621 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200012 4.3 MEDIUM
Network
jenkins claim A cross-site request forgery (CSRF) vulnerability in Jenkins Claim Plugin 2.18.1 and earlier allows attackers to change claims. CWE-352
 Origin Validation Error
CVE-2021-21620 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200013 5.4 MEDIUM
Network
jenkins claim Jenkins Claim Plugin 2.18.1 and earlier does not escape the user display name, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers who are able to control the disp… CWE-79
Cross-site Scripting
CVE-2021-21619 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200014 5.4 MEDIUM
Network
jenkins repository_connector Jenkins Repository Connector Plugin 2.0.2 and earlier does not escape parameter names and descriptions for past builds, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by a… CWE-79
Cross-site Scripting
CVE-2021-21618 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200015 8.8 HIGH
Network
jenkins configuration_slicing A cross-site request forgery (CSRF) vulnerability in Jenkins Configuration Slicing Plugin 1.51 and earlier allows attackers to apply different slice configurations. CWE-352
 Origin Validation Error
CVE-2021-21617 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200016 4.6 MEDIUM
Network
jenkins active_choices Jenkins Active Choices Plugin 2.5.2 and earlier does not escape reference parameter values, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure … CWE-79
Cross-site Scripting
CVE-2021-21616 2024-11-21 14:48 2021-02-25 Show GitHub Exploit DB Packet Storm
200017 5.3 MEDIUM
Network
brave brave Brave is an open source web browser with a focus on privacy and security. In Brave versions 1.17.73-1.20.103, the CNAME adblocking feature added in Brave 1.17.73 accidentally initiated DNS requests t… - CVE-2021-21323 2024-11-21 14:48 2021-02-24 Show GitHub Exploit DB Packet Storm
200018 6.0 MEDIUM
Local
dell emc_powerprotect_cyber_recovery Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability. A locally authenticated high privileged Cyber Recovery user may potentially exploit this vuln… CWE-200
Information Exposure
CVE-2021-21512 2024-11-21 14:48 2021-02-20 Show GitHub Exploit DB Packet Storm
200019 5.4 MEDIUM
Network
apereo opencast Opencast is a free, open-source platform to support the management of educational audio and video content. In Opencast before version 9.2 there is a vulnerability in which publishing an episode with … - CVE-2021-21318 2024-11-21 14:48 2021-02-19 Show GitHub Exploit DB Packet Storm
200020 5.3 MEDIUM
Network
uap-core_project uap-core uap-core in an open-source npm package which contains the core of BrowserScope's original user agent string parser. In uap-core before version 0.11.0, some regexes are vulnerable to regular expressio… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2021-21317 2024-11-21 14:48 2021-02-17 Show GitHub Exploit DB Packet Storm