Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131581 9.6 緊急
Network
Patreon Patreon WordPress WordPress 用 Patreon WordPress プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-24228 2021-12-10 18:00 2021-03-26 Show GitHub Exploit DB Packet Storm
131582 7.5 重要
Network
Patreon Patreon WordPress WordPress 用 Patreon WordPress プラグインにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-24227 2021-12-10 18:00 2021-03-26 Show GitHub Exploit DB Packet Storm
131583 9.8 緊急
Network
ZEROF ZEROF Expert pro ZEROF Expert pro における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-30176 2021-12-10 17:58 2021-04-13 Show GitHub Exploit DB Packet Storm
131584 8.8 重要
Network
OpenEMR
phpGACL
OpenEMR
phpGACL
phpGACL における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2020-13566 2021-12-10 17:35 2020-10-23 Show GitHub Exploit DB Packet Storm
131585 8.8 重要
Network
OpenEMR
phpGACL
OpenEMR
phpGACL
phpGACL における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2020-13568 2021-12-10 17:22 2020-10-23 Show GitHub Exploit DB Packet Storm
131586 9.8 緊急
Network
OpenClinic GA OpenClinic GA OpenClinic GA における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2020-27233 2021-12-10 17:01 2020-12-7 Show GitHub Exploit DB Packet Storm
131587 8.8 重要
Network
Directus Directus Directus 8 における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2021-29641 2021-12-10 16:57 2021-04-7 Show GitHub Exploit DB Packet Storm
131588 9.8 緊急
Network
OpenClinic GA OpenClinic GA OpenClinic GA における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2020-27234 2021-12-10 16:37 2020-12-7 Show GitHub Exploit DB Packet Storm
131589 5.4 警告
Network
Seafile Ltd. Seafile Server Seafile におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-30146 2021-12-10 16:31 2021-04-6 Show GitHub Exploit DB Packet Storm
131590 5.4 警告
Network
LiquidFiles LiquidFiles LiquidFiles におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-30140 2021-12-10 16:31 2021-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
71 5.4 MEDIUM
Network
- - Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. CWE-125
CWE-416
CWE-787
Out-of-bounds Read
 Use After Free
 Out-of-bounds Write
CVE-2026-12298 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
72 - - - Sandbox escape due to incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird … - CVE-2026-12297 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
73 - - - Sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12296 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
74 - - - Sandbox escape in the DOM: Navigation component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12295 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
75 - - - Sandbox escape in the DOM: Workers component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12294 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
76 - - - Use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. - CVE-2026-12293 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
77 - - - Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12292 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
78 - - - Use-after-free in the Networking: HTTP component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12291 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
79 - - - Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. - CVE-2026-12290 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm
80 8.8 HIGH
Network
- - Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. CWE-269
 Improper Privilege Management
CVE-2026-12289 2026-06-17 02:16 2026-06-16 Show GitHub Exploit DB Packet Storm