Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232531 7.5 危険 warpspeed
PHPNUKE
- PHP-Nuke 用の 4ndvddb モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3151 2012-12-20 18:52 2008-07-11 Show GitHub Exploit DB Packet Storm
232532 4.7 警告 wefi - WeFi における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3147 2012-12-20 18:52 2008-07-11 Show GitHub Exploit DB Packet Storm
232533 7.8 危険 secretwars - Soldner Secret Wars におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-3135 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
232534 6.8 警告 Powie - pSys の chatbox.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3131 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
232535 4.3 警告 Simple Machines - OpenCart の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3130 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
232536 5 警告 pivot - Pivot の search.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3128 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
232537 6.5 警告 Xerox - Xerox CWW における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3122 2012-12-20 18:52 2008-07-9 Show GitHub Exploit DB Packet Storm
232538 4.3 警告 Xerox - Xerox CWW におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3121 2012-12-20 18:52 2008-07-9 Show GitHub Exploit DB Packet Storm
232539 7.5 危険 phpmotion - PHPmotion の play.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3118 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
232540 6.5 警告 phpmotion - PHPmotion の update_profile.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-3117 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199821 10.0 CRITICAL
Network
anker eufy_homebase_2_firmware An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h in function recv_server_device_respon… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2021-21950 2024-11-21 14:49 2021-12-9 Show GitHub Exploit DB Packet Storm
199822 7.5 HIGH
Network
gitlab gitlab Assuming a database breach, nonce reuse issues in GitLab 11.6+ allows an attacker to decrypt some of the database's encrypted content CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-22170 2024-11-21 14:49 2021-12-7 Show GitHub Exploit DB Packet Storm
199823 6.5 MEDIUM
Network
vmware spring_advanced_message_queuing_protocol In Spring AMQP versions 2.2.0 - 2.2.19 and 2.3.0 - 2.3.11, the Spring AMQP Message object, in its toString() method, will create a new String object from the message body, regardless of its size. Thi… CWE-502
 Deserialization of Untrusted Data
CVE-2021-22095 2024-11-21 14:49 2021-12-1 Show GitHub Exploit DB Packet Storm
199824 9.8 CRITICAL
Network
vmware vcenter_server The vSphere Web Client (FLEX/Flash) contains an SSRF (Server Side Request Forgery) vulnerability in the vSAN Web Client (vSAN UI) plug-in. A malicious actor with network access to port 443 on vCenter… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-22049 2024-11-21 14:49 2021-11-25 Show GitHub Exploit DB Packet Storm
199825 7.5 HIGH
Network
vmware vcenter_server
cloud_foundation
The vSphere Web Client (FLEX/Flash) contains an unauthorized arbitrary file read vulnerability. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to gain acce… NVD-CWE-noinfo
CVE-2021-21980 2024-11-21 14:49 2021-11-25 Show GitHub Exploit DB Packet Storm
199826 5.9 MEDIUM
Network
huawei ips_module_firmware
ngfw_module_firmware
secospace_usg6300_firmware
secospace_usg6500_firmware
secospace_usg6600_firmware
usg9500_firmware
There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can exploit this vulnerability by capturing and analyzing the messages betwee… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-22356 2024-11-21 14:49 2021-11-24 Show GitHub Exploit DB Packet Storm
199827 8.8 HIGH
Network
librecad
debian
fedoraproject
libdxfrw
debian_linux
fedora
A code execution vulnerability exists in the dwgCompressor::decompress18() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to an out-of-bounds write.… - CVE-2021-21898 2024-11-21 14:49 2021-11-20 Show GitHub Exploit DB Packet Storm
199828 8.8 HIGH
Network
librecad
debian
fedoraproject
libdxfrw
debian_linux
fedora
A code execution vulnerability exists in the dxfRW::processLType() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dxf file can lead to a use-after-free vulnerability.… - CVE-2021-21900 2024-11-21 14:49 2021-11-20 Show GitHub Exploit DB Packet Storm
199829 8.8 HIGH
Network
librecad
fedoraproject
debian
libdxfrw
fedora
debian_linux
A code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to a heap buffer overflow… - CVE-2021-21899 2024-11-21 14:49 2021-11-20 Show GitHub Exploit DB Packet Storm
199830 6.5 MEDIUM
Network
greenplum greenplum In versions of Greenplum database prior to 5.28.14 and 6.17.0, certain statements execution led to the storage of sensitive(credential) information in the logs of the database. A malicious user with … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2021-22030 2024-11-21 14:49 2021-11-20 Show GitHub Exploit DB Packet Storm