Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1491 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6752 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1492 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6753 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1493 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6754 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1494 6.5 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-6755 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1495 7.5 重要
Network
Mozilla Foundation Mozilla Firefox Mozilla FoundationのMozilla Firefoxにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-6756 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1496 6.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないポインタのアクセスに関する脆弱性 CWE-824
初期化されていないポインタのアクセス
CVE-2026-6757 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1497 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6758 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
1498 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6759 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
1499 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-6760 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
1500 8.8 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-6761 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313961 7.5 HIGH
Network
ethereal ethereal The Q.931 dissector in Ethereal before 0.10.0, and Tethereal, allows remote attackers to cause a denial of service (crash) via a malformed Q.931, which triggers a null dereference. CWE-476
 NULL Pointer Dereference
CVE-2003-1013 2024-02-14 10:17 2004-01-5 Show GitHub Exploit DB Packet Storm
313962 - aol instant_messenger Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long screen name. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2003-1503 2024-02-14 10:17 2003-12-31 Show GitHub Exploit DB Packet Storm
313963 - sco unixware
open_unix
SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and c… NVD-CWE-Other
CVE-2003-0937 2024-02-14 10:17 2003-12-15 Show GitHub Exploit DB Packet Storm
313964 - ethereal_group ethereal Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed GTP MSISDN string. NVD-CWE-Other
CVE-2003-0925 2024-02-14 10:17 2003-12-1 Show GitHub Exploit DB Packet Storm
313965 - ethereal_group ethereal Ethereal 0.9.15 and earlier, and Tethereal, allows remote attackers to cause a denial of service (crash) via certain malformed (1) ISAKMP or (2) MEGACO packets. NVD-CWE-Other
CVE-2003-0926 2024-02-14 10:17 2003-12-1 Show GitHub Exploit DB Packet Storm
313966 - ethereal_group ethereal Heap-based buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SOCKS dissector. NVD-CWE-Other
CVE-2003-0927 2024-02-14 10:17 2003-12-1 Show GitHub Exploit DB Packet Storm
313967 9.8 CRITICAL
Network
acme thttpd Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contain '<' or '>' characters, which trigger the overflow when th… CWE-131
Incorrect Calculation of Buffer Size
CVE-2003-0899 2024-02-14 10:17 2003-11-3 Show GitHub Exploit DB Packet Storm
313968 - phpkit phpkit Cross-site scripting (XSS) vulnerability in include.php in PHPKIT 1.6.02 and 1.6.03 allows remote attackers to inject arbitrary web script or HTML via the contact_email parameter. NVD-CWE-Other
CVE-2003-1187 2024-02-14 10:17 2003-11-2 Show GitHub Exploit DB Packet Storm
313969 - realnetworks realone_desktop_manager
realone_player
realone_enterprise_desktop
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security… NVD-CWE-Other
CVE-2003-0726 2024-02-14 10:17 2003-10-20 Show GitHub Exploit DB Packet Storm
313970 - ethereal_group ethereal Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string. NVD-CWE-Other
CVE-2003-0428 2024-02-14 10:17 2003-07-24 Show GitHub Exploit DB Packet Storm