Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257721 5.8 警告 サン・マイクロシステムズ
GNOME Project
レッドハット
- Evolution Data Server (別名 evolution-data-server) の ntlm_challenge 関数におけるプロセスメモリ情報の漏洩またはサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-0582 2010-05-14 18:37 2009-03-14 Show GitHub Exploit DB Packet Storm
257722 1.2 注意 日本電気
サイバートラスト株式会社
サン・マイクロシステムズ
ターボリナックス
OpenSSL Project
レッドハット
- RSA key reconstruction vulnerability - CVE-2007-3108 2010-05-14 18:37 2007-08-16 Show GitHub Exploit DB Packet Storm
257723 5 警告 ヒューレット・パッカード
サイバートラスト株式会社
OpenSSL Project
ターボリナックス
レッドハット
- OpenSSL の zlib_stateful_finish 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-4355 2010-05-13 17:21 2010-01-13 Show GitHub Exploit DB Packet Storm
257724 9.3 危険 日立 - XMAP3 における任意のコードが実行される脆弱性 CWE-noinfo
情報不足
- 2010-05-13 15:14 2010-04-12 Show GitHub Exploit DB Packet Storm
257725 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Plan In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0863 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
257726 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Place In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0864 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
257727 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Markdown Optimization コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0862 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
257728 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Thesaurus Management System コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0875 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
257729 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Clinical Remote Data Capture Option コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0876 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
257730 4.3 警告 オラクル - Oracle Industry Product Suite の Communications - Oracle Communications Unified Inventory Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0874 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197081 7.1 HIGH
Network
pimcore pimcore This affects the package pimcore/pimcore before 6.8.8. A Local FIle Inclusion vulnerability exists in the downloadCsvAction function of the CustomReportController class (bundles/AdminBundle/Controlle… CWE-22
Path Traversal
CVE-2021-23340 2024-11-21 14:51 2021-02-19 Show GitHub Exploit DB Packet Storm
197082 6.5 MEDIUM
Network
lightbend akka-http This affects all versions before 10.1.14 and from 10.2.0 to 10.2.4 of package com.typesafe.akka:akka-http-core. It allows multiple Transfer-Encoding headers. CWE-444
HTTP Request Smuggling
CVE-2021-23339 2024-11-21 14:51 2021-02-17 Show GitHub Exploit DB Packet Storm
197083 5.9 MEDIUM
Network
openssl
debian
tenable
apple
netapp
oracle
siemens
openssl
debian_linux
tenable.sc
nessus_network_monitor
macos
iphone_os
safari
ipados
snapcenter
oncommand_workflow_automation
oncommand_insight
business_intelligence<…
The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate. However it fails … CWE-476
 NULL Pointer Dereference
CVE-2021-23841 2024-11-21 14:51 2021-02-17 Show GitHub Exploit DB Packet Storm
197084 7.5 HIGH
Network
openssl
debian
tenable
oracle
mcafee
fujitsu
nodejs
openssl
debian_linux
nessus_network_monitor
log_correlation_engine
business_intelligence
jd_edwards_world_security
enterprise_manager_for_storage_management
enterprise_manager_op…
Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases where the input length is close to the maximum permissable length for an integ… CWE-190
 Integer Overflow or Wraparound
CVE-2021-23840 2024-11-21 14:51 2021-02-17 Show GitHub Exploit DB Packet Storm
197085 3.7 LOW
Network
openssl
oracle
siemens
openssl
business_intelligence
jd_edwards_world_security
enterprise_manager_for_storage_management
enterprise_manager_ops_center
zfs_storage_appliance_kit
graalvm
sinec_ins
OpenSSL 1.0.2 supports SSLv2. If a client attempts to negotiate SSLv2 with a server that is configured to support both SSLv2 and more recent SSL and TLS versions then a check is made for a version ro… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-23839 2024-11-21 14:51 2021-02-17 Show GitHub Exploit DB Packet Storm
197086 7.2 HIGH
Network
microsoft qlib This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function. CWE-502
 Deserialization of Untrusted Data
CVE-2021-23338 2024-11-21 14:51 2021-02-16 Show GitHub Exploit DB Packet Storm
197087 7.2 HIGH
Network
lodash
oracle
netapp
siemens
lodash
primavera_unifier
peoplesoft_enterprise_peopletools
retail_customer_management_and_segmentation_foundation
communications_services_gatekeeper
enterprise_communications_broker
Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. CWE-94
Code Injection
CVE-2021-23337 2024-11-21 14:51 2021-02-15 Show GitHub Exploit DB Packet Storm
197088 5.9 MEDIUM
Network
python
fedoraproject
debian
netapp
djangoproject
oracle
python
fedora
debian_linux
cloud_backup
snapcenter
ontap_select_deploy_administration_utility
inventory_collect_tool
django
zfs_storage_appliance
enterprise_manager_ops_cen…
The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to Web Cache Poisoning via urllib.parse.pars… CWE-444
HTTP Request Smuggling
CVE-2021-23336 2024-11-21 14:51 2021-02-15 Show GitHub Exploit DB Packet Storm
197089 6.1 MEDIUM
Network
f5 big-ip_application_security_manager
big-ip_advanced_web_application_firewall
On BIG-IP Advanced WAF and ASM version 15.1.x before 15.1.0.2, 15.0.x before 15.0.1.4, 14.1.x before 14.1.2.5, 13.1.x before 13.1.3.4, 12.1.x before 12.1.5.2, and 11.6.x before 11.6.5.2, when receivi… CWE-601
Open Redirect
CVE-2021-22984 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm
197090 8.3 HIGH
Network
f5 big-ip_local_traffic_manager
big-ip_advanced_firewall_manager
big-ip_application_acceleration_manager
big-ip_analytics
big-ip_access_policy_manager
big-ip_application_security_manager<…
On BIG-IP version 16.0.x before 16.0.1, 15.1.x before 15.1.1, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.5, and all 12.1.x and 11.6.x versions, undisclosed endpoints in iControl REST allow for a re… CWE-79
Cross-site Scripting
CVE-2021-22978 2024-11-21 14:51 2021-02-13 Show GitHub Exploit DB Packet Storm