Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232081 4.3 警告 scripts4profit - Scripts4Profit DXShopCart の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5119 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
232082 4 警告 WordPress.org - WordPress におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5113 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
232083 4 警告 Zope Foundation - Zope の PythonScripts におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-5102 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
232084 5 警告 TYPO3 Association - TYPO3 File List エクステンションにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-5096 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232085 7.5 危険 TYPO3 Association - TYPO3 Another Backend Login エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5087 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232086 6.8 警告 scripts frenzy - E-Uploader Pro における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5075 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232087 7.5 危険 PHP-Fusion - PHP-Fusion 用の Freshlinks モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5074 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232088 9 危険 yoxel - Yoxel の itpm_estimate.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-5071 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232089 7.5 危険 Pro Chat Rooms - Pro Chat Rooms における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5070 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
232090 5 警告 smolinari - mwcal の php/cal_pdf.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5062 2012-12-20 18:52 2008-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199721 8.8 HIGH
Network
accusoft imagegear A heap-based buffer overflow vulnerability exists in the Palette box parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead to code execution. An attacker can provide a m… CWE-193
 Off-by-one Error
CVE-2021-21938 2024-11-21 14:49 2022-04-15 Show GitHub Exploit DB Packet Storm
199722 8.8 HIGH
Network
accusoft imagegear A heap-based buffer overflow vulnerability exists in the DecoderStream::Append functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead to code execution. An attacker can provide … CWE-190
 Integer Overflow or Wraparound
CVE-2021-21914 2024-11-21 14:49 2022-04-15 Show GitHub Exploit DB Packet Storm
199723 5.3 MEDIUM
Network
vmware photon_os The SchedulerServer in Vmware photon allows remote attackers to inject logs through \r in the package parameter. Attackers can also insert malicious data and fake entries. CWE-74
Injection
CVE-2021-22055 2024-11-21 14:49 2022-04-12 Show GitHub Exploit DB Packet Storm
199724 8.0 HIGH
Adjacent
fortinet forticlient An improper input validation vulnerability in FortiClient for Linux 6.4.x before 6.4.3, FortiClient for Linux 6.2.x before 6.2.9 may allow an unauthenticated attacker to execute arbitrary code on the… CWE-78
OS Command 
CVE-2021-22127 2024-11-21 14:49 2022-04-7 Show GitHub Exploit DB Packet Storm
199725 7.5 HIGH
Network
abb base_software
compact_product_suite
control_builder_safe
800xa
Improper Input Validation vulnerability in ABB 800xA, Control Software for AC 800M, Control Builder Safe, Compact Product Suite - Control and I/O, ABB Base Software for SoftControl allows an attacker… CWE-20
 Improper Input Validation 
CVE-2021-22277 2024-11-21 14:49 2022-04-2 Show GitHub Exploit DB Packet Storm
199726 5.3 MEDIUM
Network
cloudfoundry capi-release
cf-deployment
In cloud foundry CAPI versions prior to 1.122, a denial-of-service attack in which a developer can push a service broker that (accidentally or maliciously) causes CC instances to timeout and fail is … CWE-400
 Uncontrolled Resource Consumption
CVE-2021-22100 2024-11-21 14:49 2022-03-26 Show GitHub Exploit DB Packet Storm
199727 7.5 HIGH
Network
huawei magic_ui
emui
harmonyos
There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows. CWE-190
 Integer Overflow or Wraparound
CVE-2021-22319 2024-11-21 14:49 2022-02-26 Show GitHub Exploit DB Packet Storm
199728 7.5 HIGH
Network
vmware esxi
cloud_foundation
ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to ESXi may exploit this issue to create a denial-of-service condition by overwhelm… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-22050 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199729 7.5 HIGH
Network
vmware esxi
fusion
VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled. A malicious actor with access to settingsd, may exploit this issue to escal… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-22043 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199730 7.8 HIGH
Local
vmware esxi
cloud_foundation
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to ac… CWE-863
 Incorrect Authorization
CVE-2021-22042 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm