Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251511 5 警告 CubeCart Limited - CubeCart における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3724 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251512 5 警告 craftysyntax - Crafty Syntax における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3723 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251513 5 警告 Coppermine Photo Gallery - CPG における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3722 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251514 5 警告 concrete5 - concrete における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3721 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251515 5 警告 conceptcms - conceptcms における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3720 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251516 5 警告 British Columbia Institute of Technology - CodeIgniter における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3719 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251517 5 警告 CMS Made Simple - CMSMS における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3718 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251518 5 警告 ClipBucket - ClipBucket における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3717 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251519 5 警告 Claroline Consortium - Claroline における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3716 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
251520 5 警告 clantiger - ClanTiger における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3715 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195031 8.8 HIGH
Network
b2evolution b2evolution SQL Injection in the "evoadm.php" component of b2evolution v7.2.2-stable allows remote attackers to obtain sensitive database information by injecting SQL commands into the "cf_name" parameter when c… CWE-89
SQL Injection
CVE-2021-28242 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195032 5.5 MEDIUM
Local
eclipse
oracle
jersey
communications_cloud_native_core_policy
communications_cloud_native_core_unified_data_repository
Eclipse Jersey 2.28 to 2.33 and Eclipse Jersey 3.0.0 to 3.0.1 contains a local information disclosure vulnerability. This is due to the use of the File.createTempFile which creates a file inside of t… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-28168 2024-11-21 14:59 2021-04-23 Show GitHub Exploit DB Packet Storm
195033 7.2 HIGH
Network
devolutions devolutions_server An SQL Injection issue in Devolutions Server before 2021.1 and Devolutions Server LTS before 2020.3.18 allows an administrative user to execute arbitrary SQL commands via a username in api/security/u… CWE-89
SQL Injection
CVE-2021-28157 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195034 6.5 MEDIUM
Network
devolutions devolutions_server An overly permissive CORS policy in Devolutions Server before 2021.1 and Devolutions Server LTS before 2020.3.18 allows a remote attacker to leak cross-origin data via a crafted HTML page. CWE-346
 Origin Validation Error
CVE-2021-28048 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195035 7.5 HIGH
Network
yubico
fedoraproject
yubihsm_connector
fedora
An issue was discovered in the /api/connector endpoint handler in Yubico yubihsm-connector before 3.0.1 (in YubiHSM SDK before 2021.04). The handler did not validate the length of the request, which … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-28484 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195036 5.3 MEDIUM
Network
group-office group_office A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-28060 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195037 7.8 HIGH
Local
forescout counteract An issue was discovered in Forescout CounterACT before 8.1.4. A local privilege escalation vulnerability is present in the logging function. SecureConnector runs with administrative privileges and wr… CWE-59
CWE-427
CWE-732
Link Following
 Uncontrolled Search Path Element
 Incorrect Permission Assignment for Critical Resource
CVE-2021-28098 2024-11-21 14:59 2021-04-15 Show GitHub Exploit DB Packet Storm
195038 9.8 CRITICAL
Network
gpac gpac NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicio… CWE-476
 NULL Pointer Dereference
CVE-2021-28300 2024-11-21 14:59 2021-04-14 Show GitHub Exploit DB Packet Storm
195039 9.0 CRITICAL
Adjacent
microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2021-28483 2024-11-21 14:59 2021-04-14 Show GitHub Exploit DB Packet Storm
195040 8.8 HIGH
Network
microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2021-28482 2024-11-21 14:59 2021-04-14 Show GitHub Exploit DB Packet Storm