Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249011 5 警告 Tornado - Tornado の tornado.web.RequestHandler.set_header 関数における CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2012-2374 2012-05-25 11:26 2012-05-23 Show GitHub Exploit DB Packet Storm
249012 6.4 警告 Gliffy - Atlassian JIRA および Atlassian Confluence 用 Gliffy プラグインにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2928 2012-05-24 13:42 2012-05-22 Show GitHub Exploit DB Packet Storm
249013 4 警告 TM Software - Atlassian JIRA 用 TM Software Tempo プラグインにおけるサービス運用妨害 (リソース消費)の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2927 2012-05-24 13:41 2012-05-22 Show GitHub Exploit DB Packet Storm
249014 4.3 警告 NetWebLogic - WordPress 用 Login With Ajax プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2759 2012-05-24 13:38 2012-05-22 Show GitHub Exploit DB Packet Storm
249015 4.3 警告 Schneider Electric - Schneider Electric Kerweb および Kerwin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1990 2012-05-24 12:32 2012-05-22 Show GitHub Exploit DB Packet Storm
249016 7.5 危険 Thomas Abeel - Simple PHP Agenda の engine.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2925 2012-05-23 19:35 2012-05-21 Show GitHub Exploit DB Packet Storm
249017 7.5 危険 HyperMethod IBS - Hypermethod eLearning Server の admin/setup.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2012-2924 2012-05-23 19:35 2012-05-21 Show GitHub Exploit DB Packet Storm
249018 7.5 危険 HyperMethod IBS - Hypermethod eLearning Server の news.php4 における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2923 2012-05-23 19:34 2012-05-21 Show GitHub Exploit DB Packet Storm
249019 5 警告 Drupal - Drupal の includes/bootstrap.inc 内の request_path 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-2922 2012-05-23 19:33 2012-05-21 Show GitHub Exploit DB Packet Storm
249020 3.5 注意 Geoff Davies - Drupal 用 Contact Forms モジュールにおけるモジュールの設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2340 2012-05-23 19:12 2012-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197231 7.5 HIGH
Network
ibm qradar_security_information_and_event_manager IBM QRadar SIEM 7.3 and 7.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 196074. CWE-326
Inadequate Encryption Strength
CVE-2021-20400 2024-11-21 14:46 2021-12-2 Show GitHub Exploit DB Packet Storm
197232 7.5 HIGH
Network
mitsubishi melsec_iq-r_r00_cpu_firmware
melsec_iq-r_r01_cpu_firmware
melsec_iq-r_r02_cpu_firmware
melsec_iq-r_r04_cpu_firmware
melsec_iq-r_r08_cpu_firmware
melsec_iq-r_r120_cpu_firmware
melsec…
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R Series R… CWE-20
 Improper Input Validation 
CVE-2021-20611 2024-11-21 14:46 2021-12-2 Show GitHub Exploit DB Packet Storm
197233 7.5 HIGH
Network
mitsubishi melsec_iq-r_r00_cpu_firmware
melsec_iq-r_r01_cpu_firmware
melsec_iq-r_r02_cpu_firmware
melsec_iq-r_r04_cpu_firmware
melsec_iq-r_r08_cpu_firmware
melsec_iq-r_r120_cpu_firmware
melsec…
Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120S… NVD-CWE-Other
CVE-2021-20610 2024-11-21 14:46 2021-12-2 Show GitHub Exploit DB Packet Storm
197234 7.5 HIGH
Network
mitsubishi melsec_iq-r_r00_cpu_firmware
melsec_iq-r_r01_cpu_firmware
melsec_iq-r_r02_cpu_firmware
melsec_iq-r_r04_cpu_firmware
melsec_iq-r_r08_cpu_firmware
melsec_iq-r_r120_cpu_firmware
melsec…
Uncontrolled Resource Consumption vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R … CWE-400
 Uncontrolled Resource Consumption
CVE-2021-20609 2024-11-21 14:46 2021-12-2 Show GitHub Exploit DB Packet Storm
197235 7.5 HIGH
Network
mitsubishielectric gt_softgot2000
got_simple_gs2110-wtbd_firmware
got_simple_gs2107-wtbd_firmware
got2000_gt2104-rtbd_firmware
got2000_gt2103-pmbd_firmware
got2000_gt2103-pmbds_firmware
got2000_gt2103…
Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all versions, GOT2000 series GT23 model all versions, GOT2000 series GT21 model all versio… CWE-20
 Improper Input Validation 
CVE-2021-20601 2024-11-21 14:46 2021-11-24 Show GitHub Exploit DB Packet Storm
197236 5.3 MEDIUM
Network
ibm planning_analytics IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-20526 2024-11-21 14:46 2021-10-28 Show GitHub Exploit DB Packet Storm
197237 7.5 HIGH
Network
mitsubishielectric r08sfcpu_firmware
r16sfcpu_firmware
r32sfcpu_firmware
r120sfcpu_firmware
r08psfcpu_firmware
r16psfcpu_firmware
r32psfcpu_firmware
r120psfcpu_firmware
Cleartext Transmission of Sensitive InformationCleartext transmission of sensitive information vulnerability in MELSEC iQ-R series Safety CPU R08/16/32/120SFCPU firmware versions "26" and prior and M… - CVE-2021-20599 2024-11-21 14:46 2021-10-15 Show GitHub Exploit DB Packet Storm
197238 5.9 MEDIUM
Network
mitsubishielectric r12ccpu-v_firmware Uncontrolled resource consumption in Mitsubishi Electric MELSEC iQ-R series C Controller Module R12CCPU-V Firmware Versions "16" and prior allows a remote unauthenticated attacker to cause a denial-o… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-20600 2024-11-21 14:46 2021-10-9 Show GitHub Exploit DB Packet Storm
197239 7.5 HIGH
Network
ibm sterling_b2b_integrator IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow a remote attacker to upload arbitrary files, caused by improper access controls. IBM X-Force ID: 199397. NVD-CWE-Other
CVE-2021-20584 2024-11-21 14:46 2021-10-8 Show GitHub Exploit DB Packet Storm
197240 5.4 MEDIUM
Network
ibm sterling_b2b_integrator IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in… CWE-79
Cross-site Scripting
CVE-2021-20571 2024-11-21 14:46 2021-10-8 Show GitHub Exploit DB Packet Storm