|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249011 | 4.3 | 警告 | RSSOwl | - | RSSOwl において任意のスクリプトが実行される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1252 | 2012-05-25 12:01 | 2012-05-25 | Show | GitHub Exploit DB Packet Storm |
| 249012 | 7.5 | 危険 | SIRINI.NET | - | GR Board における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5091 | 2012-05-25 11:53 | 2012-05-24 | Show | GitHub Exploit DB Packet Storm |
| 249013 | 6.4 | 警告 | SIRINI.NET | - | GR Board におけるデータを変更または削除される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-5090 | 2012-05-25 11:52 | 2012-05-24 | Show | GitHub Exploit DB Packet Storm |
| 249014 | 5 | 警告 | Tornado | - | Tornado の tornado.web.RequestHandler.set_header 関数における CRLF インジェクションの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-2374 | 2012-05-25 11:26 | 2012-05-23 | Show | GitHub Exploit DB Packet Storm |
| 249015 | 6.4 | 警告 | Gliffy | - | Atlassian JIRA および Atlassian Confluence 用 Gliffy プラグインにおける任意のファイルを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-2928 | 2012-05-24 13:42 | 2012-05-22 | Show | GitHub Exploit DB Packet Storm |
| 249016 | 4 | 警告 | TM Software | - | Atlassian JIRA 用 TM Software Tempo プラグインにおけるサービス運用妨害 (リソース消費)の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2012-2927 | 2012-05-24 13:41 | 2012-05-22 | Show | GitHub Exploit DB Packet Storm |
| 249017 | 4.3 | 警告 | NetWebLogic | - | WordPress 用 Login With Ajax プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-2759 | 2012-05-24 13:38 | 2012-05-22 | Show | GitHub Exploit DB Packet Storm |
| 249018 | 4.3 | 警告 | Schneider Electric | - | Schneider Electric Kerweb および Kerwin におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1990 | 2012-05-24 12:32 | 2012-05-22 | Show | GitHub Exploit DB Packet Storm |
| 249019 | 7.5 | 危険 | Thomas Abeel | - | Simple PHP Agenda の engine.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-2925 | 2012-05-23 19:35 | 2012-05-21 | Show | GitHub Exploit DB Packet Storm |
| 249020 | 7.5 | 危険 | HyperMethod IBS | - | Hypermethod eLearning Server の admin/setup.inc.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-2924 | 2012-05-23 19:35 | 2012-05-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 197071 | 9.1 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arbitrary code from a … | - | CVE-2021-21351 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197072 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform weblogic_server webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_acco… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitrary code only by ma… | - | CVE-2021-21350 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197073 | 8.6 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resour… | - | CVE-2021-21349 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197074 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes max… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2021-21348 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197075 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform weblogic_server webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_acco… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21347 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197076 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal bi_publisher communications_unified_inventory_management communications_policy_management banking_virtual_account… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21346 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197077 | 9.9 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management peoplesoft_enterprise_peopletools ba… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute… |
CWE-78
OS Command |
CVE-2021-21345 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197078 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21344 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197079 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21343 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 197080 | 9.1 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management b… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21342 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |