|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252231 | 9.3 | 危険 | Mozilla Foundation レッドハット |
- | Mozilla Firefox および Thunderbird の JSSubScriptLoader における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-3647 | 2012-01-6 19:13 | 2011-11-8 | Show | GitHub Exploit DB Packet Storm |
| 252232 | 4.3 | 警告 | Pidgin レッドハット |
- | Pidgin などの製品で使用される libpurple におけるサービス運用妨害 (クラッシュ) の脆弱性 |
CWE-119
バッファエラー |
CVE-2011-3594 | 2012-01-6 18:46 | 2011-09-29 | Show | GitHub Exploit DB Packet Storm |
| 252233 | 6.9 | 警告 | eEye Digital Security | - | eEye Retina CS Vulnerability Management Console が任意のプログラムを実行する問題 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-3337 | 2012-01-6 16:08 | 2011-11-9 | Show | GitHub Exploit DB Packet Storm |
| 252234 | 4.3 | 警告 | Textpattern | - | Textpattern CMS の setup/index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5019 | 2012-01-6 15:46 | 2012-01-5 | Show | GitHub Exploit DB Packet Storm |
| 252235 | 5 | 警告 | Apache Software Foundation | - | Apache ActiveMQ におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-4905 | 2012-01-6 15:45 | 2012-01-5 | Show | GitHub Exploit DB Packet Storm |
| 252236 | 6.8 | 警告 | CoCSoft Computing | - | CoCSoft Stream Down におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-5052 | 2012-01-6 15:43 | 2012-01-4 | Show | GitHub Exploit DB Packet Storm |
| 252237 | 7.5 | 危険 | WP Symposium | - | WordPress 用の WP Symposium プラグインにおける任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2011-5051 | 2012-01-6 15:42 | 2012-01-4 | Show | GitHub Exploit DB Packet Storm |
| 252238 | 6 | 警告 | Elitecore Technologies | - | Elitecore Technologies Cyberoam UTM における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5050 | 2012-01-6 15:40 | 2012-01-4 | Show | GitHub Exploit DB Packet Storm |
| 252239 | 7.8 | 危険 | MySQL AB | - | Windows 上で稼働する MySQL におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-5049 | 2012-01-6 15:39 | 2012-01-4 | Show | GitHub Exploit DB Packet Storm |
| 252240 | 5.1 | 警告 | e107.org | - | e107 の usersettings.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4921 | 2012-01-6 15:28 | 2012-01-4 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 28, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195591 | 8.6 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resour… | - | CVE-2021-21349 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195592 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes max… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2021-21348 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195593 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform weblogic_server webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_acco… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21347 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195594 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal bi_publisher communications_unified_inventory_management communications_policy_management banking_virtual_account… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21346 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195595 | 9.9 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management peoplesoft_enterprise_peopletools ba… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute… |
CWE-78
OS Command |
CVE-2021-21345 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195596 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21344 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195597 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21343 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195598 | 9.1 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management b… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21342 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195599 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_billing_and_revenue_management_elastic_charging_engine bu… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is vulnerability which may allow a remote attacker to allocate 100% CPU time on the targe… | - | CVE-2021-21341 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 195600 | 4.3 |
MEDIUM
Network |
otrs |
faq otrs |
Agents are able to see linked FAQ articles without permissions (defined in FAQ Category). This issue affects: FAQ version 6.0.29 and prior versions, OTRS version 7.0.24 and prior versions. |
CWE-276
Incorrect Default Permissions |
CVE-2021-21438 | 2024-11-21 14:48 | 2021-03-22 | Show | GitHub Exploit DB Packet Storm |