Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247391 7.2 危険 GNU Project - GNU GRUB における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4128 2012-06-26 16:18 2009-12-1 Show GitHub Exploit DB Packet Storm
247392 4.3 警告 Drupal
Alex Barth
- Drupal の Feed Element Mapper におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4119 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
247393 9.3 危険 Mozilla Foundation
didier ernotte
- Firefox の infoRSS におけるクロスドメインスクリプティング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4101 2012-06-26 16:18 2009-07-3 Show GitHub Exploit DB Packet Storm
247394 7.5 危険 Joomla!
g4j.laoneo
- Joomla! 用 Google Calendar GCalendar コンポーネンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4099 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247395 7.5 危険 companionway - myPhile における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4095 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247396 7.5 危険 designforjoomla
Joomla!
- Joomla! 用の D4J eZine コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4094 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247397 7.5 危険 e107.org - e107 の検索機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4084 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247398 4.3 警告 e107.org - e107 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4083 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247399 4.4 警告 DAG - dstat における権限を取得される脆弱性 CWE-Other
その他
CVE-2009-4081 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
247400 7.5 危険 GForge Group - GForge における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4070 2012-06-26 16:18 2009-11-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200111 6.7 MEDIUM
Local
sophos home
intercept_x
In multiple versions of Sophos Endpoint products for MacOS, a local attacker could execute arbitrary code with administrator privileges. NVD-CWE-noinfo
CVE-2021-25264 2024-11-21 14:54 2021-05-18 Show GitHub Exploit DB Packet Storm
200112 7.8 HIGH
Local
opensuse factory A Incorrect Default Permissions vulnerability in the packaging of virtualbox of openSUSE Factory allows local attackers in the vboxusers groupu to escalate to root. This issue affects: openSUSE Facto… - CVE-2021-25319 2024-11-21 14:54 2021-05-5 Show GitHub Exploit DB Packet Storm
200113 3.3 LOW
Local
suse
fedoraproject
cups
fedora
A Incorrect Default Permissions vulnerability in the packaging of cups of SUSE Linux Enterprise Server 11-SP4-LTSS, SUSE Manager Server 4.0, SUSE OpenStack Cloud Crowbar 9; openSUSE Leap 15.2, Factor… - CVE-2021-25317 2024-11-21 14:54 2021-05-5 Show GitHub Exploit DB Packet Storm
200114 6.1 MEDIUM
Network
solarwinds serv-u_file_server SolarWinds Serv-U before 15.2 is affected by Cross Site Scripting (XSS) via the HTTP Host header. CWE-79
Cross-site Scripting
CVE-2021-25179 2024-11-21 14:54 2021-05-5 Show GitHub Exploit DB Packet Storm
200115 8.8 HIGH
Network
arubanetworks airwave A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address th… CWE-78
OS Command 
CVE-2021-25167 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm
200116 8.8 HIGH
Network
arubanetworks airwave A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address th… CWE-78
OS Command 
CVE-2021-25166 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm
200117 8.1 HIGH
Network
arubanetworks airwave A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address th… CWE-611
XXE
CVE-2021-25163 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm
200118 9.8 CRITICAL
Network
debian
isc
siemens
netapp
debian_linux
bind
sinec_infrastructure_network_services
cloud_backup
active_iq_unified_manager
aff_a250_firmware
aff_500f_firmware
h300s_firmware
h500s_firmware
h700s_firmw…
In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.1 of t… CWE-125
Out-of-bounds Read
CVE-2021-25216 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm
200119 7.5 HIGH
Network
debian
isc
fedoraproject
netapp
oracle
siemens
debian_linux
bind
fedora
cloud_backup
active_iq_unified_manager
h300s_firmware
h500s_firmware
h700s_firmware
h300e_firmware
h500e_firmware
h700e_firmware
h410s_firmwa…
In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of t… CWE-617
 Reachable Assertion
CVE-2021-25215 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm
200120 6.5 MEDIUM
Network
isc
debian
fedoraproject
siemens
netapp
bind
debian_linux
fedora
sinec_infrastructure_network_services
cloud_backup
active_iq_unified_manager
aff_a250_firmware
aff_500f_firmware
h300s_firmware
h500s_firmware
h…
In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17… CWE-617
 Reachable Assertion
CVE-2021-25214 2024-11-21 14:54 2021-04-29 Show GitHub Exploit DB Packet Storm