Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253211 4.3 警告 Parallels - Parallels Plesk Panel の Site Editor 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4777 2011-12-20 12:23 2011-12-16 Show GitHub Exploit DB Packet Storm
253212 4.3 警告 Parallels - Parallels Plesk Panel の Control Panel におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4776 2011-12-20 12:22 2011-12-16 Show GitHub Exploit DB Packet Storm
253213 10 危険 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4768 2011-12-20 12:21 2011-12-16 Show GitHub Exploit DB Packet Storm
253214 5 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4767 2011-12-20 12:21 2011-12-16 Show GitHub Exploit DB Packet Storm
253215 4.3 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4765 2011-12-20 12:12 2011-12-16 Show GitHub Exploit DB Packet Storm
253216 4.3 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4764 2011-12-20 12:11 2011-12-16 Show GitHub Exploit DB Packet Storm
253217 7.5 危険 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4763 2011-12-20 12:11 2011-12-16 Show GitHub Exploit DB Packet Storm
253218 10 危険 Parallels - Parallels Plesk Small Business Panel における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4762 2011-12-20 11:33 2011-12-16 Show GitHub Exploit DB Packet Storm
253219 10 危険 Parallels - Parallels Plesk Small Business Panel における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4761 2011-12-20 11:33 2011-12-16 Show GitHub Exploit DB Packet Storm
253220 5 警告 Parallels - Parallels Plesk Small Business Panel における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4760 2011-12-20 11:31 2011-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194851 8.1 HIGH
Network
open-emr openemr In OpenEMR, versions 5.0.0 to 6.0.0.1 are vulnerable to weak password requirements as it does not enforce a maximum password length limit. If a malicious user is aware of the first 72 characters of t… CWE-521
Weak Password Requirements 
CVE-2021-25923 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194852 5.4 MEDIUM
Network
avaya aura_experience_portal Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allow an authenticated user to potentially disclose sensitive information. Affected… CWE-79
Cross-site Scripting
CVE-2021-25656 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194853 6.1 MEDIUM
Network
avaya aura_experience_portal A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any untrusted site through a crafted attack. Affected versions include 7.0 through 7.… CWE-601
Open Redirect
CVE-2021-25655 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194854 7.8 HIGH
Local
avaya aura_appliance_virtualization_platform A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) that may potentially allow a local user to escalate privileges. Affects 8.0.0.0 th… NVD-CWE-noinfo
CVE-2021-25653 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194855 5.5 MEDIUM
Local
avaya aura_appliance_virtualization_platform An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virtualization Platform Utilities (AVPU). This vulnerability may potentially allow … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-25652 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194856 7.8 HIGH
Local
avaya aura_utility_services A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to escalate privileges. Affects all 7.x versions of Avaya Aura Utility Servi… CWE-269
 Improper Privilege Management
CVE-2021-25651 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194857 8.8 HIGH
Local
avaya aura_utility_services A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to execute specially crafted scripts as a privileged user. Affects all 7.x v… CWE-269
 Improper Privilege Management
CVE-2021-25650 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194858 5.5 MEDIUM
Local
avaya aura_utility_services An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Services. This vulnerability may potentially allow any local user to access system fu… NVD-CWE-Other
CVE-2021-25649 2024-11-21 14:55 2021-06-24 Show GitHub Exploit DB Packet Storm
194859 7.8 HIGH
Local
canonical apport It was discovered that apport in data/apport did not properly open a report file to prevent hanging reads on a FIFO. CWE-20
 Improper Input Validation 
CVE-2021-25684 2024-11-21 14:55 2021-06-11 Show GitHub Exploit DB Packet Storm
194860 7.8 HIGH
Local
canonical apport It was discovered that the get_starttime() function in data/apport did not properly parse the /proc/pid/stat file from the kernel. CWE-20
 Improper Input Validation 
CVE-2021-25683 2024-11-21 14:55 2021-06-11 Show GitHub Exploit DB Packet Storm