Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258821 10 危険 CA Technologies - 複数の CA 製品の NetBackup サービスにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-1329 2010-12-24 11:39 2008-04-11 Show GitHub Exploit DB Packet Storm
258822 9.3 危険 CA Technologies - 複数の CA 製品の LGServer サービスにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1328 2010-12-24 11:39 2008-04-11 Show GitHub Exploit DB Packet Storm
258823 10 危険 ターボリナックス
ProFTPD Project
- ProFTPD の pr_netio_telnet_get 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4221 2010-12-22 15:20 2010-10-29 Show GitHub Exploit DB Packet Storm
258824 7.1 危険 サイバートラスト株式会社
ProFTPD Project
ターボリナックス
- ProFTPD の mod_site_misc モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3867 2010-12-22 15:19 2010-10-29 Show GitHub Exploit DB Packet Storm
258825 9.3 危険 Mozilla Foundation
オラクル
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-3174 2010-12-22 15:16 2010-10-19 Show GitHub Exploit DB Packet Storm
258826 4.3 警告 Mozilla Foundation
オラクル
- 複数の Mozilla 製品の SafeJSObjectWrapper 実装における同一生成元ポリシーを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2763 2010-12-22 15:15 2010-09-7 Show GitHub Exploit DB Packet Storm
258827 4.3 警告 ISC, Inc.
レッドハット
- ISC DHCP サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-3611 2010-12-22 14:25 2010-11-2 Show GitHub Exploit DB Packet Storm
258828 5 警告 Wireshark - Wireshark の ZigBee ZCL 解析部の epan/dissectors/packet-zbee-zcl.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4301 2010-12-22 14:20 2010-11-18 Show GitHub Exploit DB Packet Storm
258829 4.3 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
オラクル
- 複数の Mozilla 製品におけるクロスサイトスクリプティングを誘導される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1210 2010-12-21 16:14 2010-07-20 Show GitHub Exploit DB Packet Storm
258830 4.3 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
オラクル
- 複数の Mozilla 製品の XMLDocument::load 関数におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0182 2010-12-21 16:11 2010-03-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200451 4.3 MEDIUM
Network
jenkins cloud_statistics Jenkins Cloud Statistics Plugin 0.26 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission and knowledge of random activity IDs to view … CWE-862
 Missing Authorization
CVE-2021-21631 2024-11-21 14:48 2021-03-30 Show GitHub Exploit DB Packet Storm
200452 5.4 MEDIUM
Network
jenkins extra_columns Jenkins Extra Columns Plugin 1.22 and earlier does not escape parameter values in the build parameters column, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers … CWE-79
Cross-site Scripting
CVE-2021-21630 2024-11-21 14:48 2021-03-30 Show GitHub Exploit DB Packet Storm
200453 8.8 HIGH
Network
jenkins build_with_parameters A cross-site request forgery (CSRF) vulnerability in Jenkins Build With Parameters Plugin 1.5 and earlier allows attackers to build a project with attacker-specified parameters. CWE-352
 Origin Validation Error
CVE-2021-21629 2024-11-21 14:48 2021-03-30 Show GitHub Exploit DB Packet Storm
200454 5.4 MEDIUM
Network
jenkins build_with_parameters Jenkins Build With Parameters Plugin 1.5 and earlier does not escape parameter names and descriptions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job… CWE-79
Cross-site Scripting
CVE-2021-21628 2024-11-21 14:48 2021-03-30 Show GitHub Exploit DB Packet Storm
200455 7.5 HIGH
Network
zte zxhn_f623_firmware A ZTE product has a DoS vulnerability. A remote attacker can amplify traffic by sending carefully constructed IPv6 packets to the affected devices, which eventually leads to device denial of service.… NVD-CWE-noinfo
CVE-2021-21727 2024-11-21 14:48 2021-03-30 Show GitHub Exploit DB Packet Storm
200456 6.5 MEDIUM
Network
wire wire_server wire-server is an open-source back end for Wire, a secure collaboration platform. In wire-server from version 2021-02-16 and before version 2021-03-02, the client metadata of all users was exposed in… - CVE-2021-21396 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
200457 8.1 HIGH
Network
nim-lang nim Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, "nimble refresh" fetches a list of Nimble packages over HTTPS without full veri… CWE-295
Improper Certificate Validation 
CVE-2021-21374 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
200458 5.9 MEDIUM
Network
nim-lang nim Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, "nimble refresh" fetches a list of Nimble packages over HTTPS by default. In ca… CWE-295
Improper Certificate Validation 
CVE-2021-21373 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
200459 8.8 HIGH
Network
nim-lang nim Nimble is a package manager for the Nim programming language. In Nim release version before versions 1.2.10 and 1.4.4, Nimble doCmd is used in different places and can be leveraged to execute arbitra… CWE-78
OS Command 
CVE-2021-21372 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm
200460 8.8 HIGH
Network
buddypress buddypress BuddyPress is an open source WordPress plugin to build a community site. In releases of BuddyPress from 5.0.0 before 7.2.1 it's possible for a non-privileged, regular user to obtain administrator rig… - CVE-2021-21389 2024-11-21 14:48 2021-03-27 Show GitHub Exploit DB Packet Storm