Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249491 7.5 危険 Ola Lasisi - e-ticketing の loginscript.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1673 2012-04-12 16:57 2011-04-11 Show GitHub Exploit DB Packet Storm
249492 7.5 危険 useasdf_4444 - Hotel Booking Portal の getcity.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1672 2012-04-12 16:57 2011-04-11 Show GitHub Exploit DB Packet Storm
249493 4.3 警告 Novell - Novell ZENworks Configuration Management におけるクロスサイトトレーシング攻撃を誘発される脆弱性 CWE-200
情報漏えい
CVE-2012-2223 2012-04-12 16:53 2012-02-8 Show GitHub Exploit DB Packet Storm
249494 7.8 危険 ソニー株式会社 - ソニー製 Bravia TV におけるサービス運用妨害 (機能停止またはデバイスクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2210 2012-04-12 16:52 2012-04-11 Show GitHub Exploit DB Packet Storm
249495 4.3 警告 DNN - DotNetNuke の Telerik HTML エディタにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1036 2012-04-12 16:06 2011-11-1 Show GitHub Exploit DB Packet Storm
249496 4.3 警告 DNN - DotNetNuke におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1030 2012-04-12 16:05 2012-02-1 Show GitHub Exploit DB Packet Storm
249497 7.5 危険 アドビシステムズ - Adobe Reader および Acrobat の JavaScript API における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0777 2012-04-12 15:08 2012-04-10 Show GitHub Exploit DB Packet Storm
249498 10 危険 アドビシステムズ - Adobe Reader のインストーラにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0776 2012-04-12 15:05 2012-04-10 Show GitHub Exploit DB Packet Storm
249499 10 危険 アドビシステムズ - Adobe Reader および Acrobat の JavaScript 実装における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0775 2012-04-12 14:57 2012-04-10 Show GitHub Exploit DB Packet Storm
249500 10 危険 アドビシステムズ - Adobe Reader および Acrobat における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-0774 2012-04-12 14:55 2012-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196521 8.8 HIGH
Network
buddypress buddypress BuddyPress is an open source WordPress plugin to build a community site. In releases of BuddyPress from 5.0.0 before 7.2.1 it's possible for a non-privileged, regular user to obtain administrator rig… - CVE-2021-21389 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
196522 5.5 MEDIUM
Network
oauth2_proxy_project oauth2_proxy OAuth2-Proxy is an open source reverse proxy that provides authentication with Google, Github or other providers. The `--gitlab-group` flag for group-based authorization in the GitLab provider stoppe… - CVE-2021-21411 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
196523 6.1 MEDIUM
Network
matrix
fedoraproject
synapse
fedora
Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.27.0, the n… CWE-79
Cross-site Scripting
CVE-2021-21333 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
196524 8.2 HIGH
Network
matrix
fedoraproject
synapse
fedora
Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.27.0, the p… CWE-79
Cross-site Scripting
CVE-2021-21332 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
196525 9.8 CRITICAL
Network
kongchuanhujiao_project kongchuanhujiao In github.com/kongchuanhujiao/server before version 1.3.21 there is an authentication Bypass by Primary Weakness vulnerability. All users are impacted. This is fixed in version 1.3.21. CWE-287
Improper Authentication
CVE-2021-21403 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
196526 9.8 CRITICAL
Network
genivia
oracle
gsoap
communications_lsms
communications_diameter_signaling_router
tekelec_virtual_operating_environment
communications_eagle_lnp_application_processor
communications_eagle_application…
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to remote code execution. An attacker can send an H… CWE-190
 Integer Overflow or Wraparound
CVE-2021-21783 2024-11-21 14:48 2021-03-26 Show GitHub Exploit DB Packet Storm
196527 9.8 CRITICAL
Network
apkleaks_project apkleaks APKLeaks is an open-source project for scanning APK file for URIs, endpoints & secrets. APKLeaks prior to v2.0.3 allows remote attackers to execute arbitrary OS commands via package name inside appli… - CVE-2021-21386 2024-11-21 14:48 2021-03-25 Show GitHub Exploit DB Packet Storm
196528 7.4 HIGH
Network
mifos mifos-mobile Mifos-Mobile Android Application for MifosX is an Android Application built on top of the MifosX Self-Service platform. Mifos-Mobile before commit e505f62 disables HTTPS hostname verification of its … - CVE-2021-21385 2024-11-21 14:48 2021-03-25 Show GitHub Exploit DB Packet Storm
196529 8.8 HIGH
Network
xwiki xwiki XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions of XWiki Platform (and only those with the Ratings API installed), the Ra… CWE-89
SQL Injection
CVE-2021-21380 2024-11-21 14:48 2021-03-24 Show GitHub Exploit DB Packet Storm
196530 6.5 MEDIUM
Network
jellyfin jellyfin Jellyfin is a Free Software Media System. In Jellyfin before version 10.7.1, with certain endpoints, well crafted requests will allow arbitrary file read from a Jellyfin server's file system. This is… - CVE-2021-21402 2024-11-21 14:48 2021-03-24 Show GitHub Exploit DB Packet Storm