Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224901 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の SOW および COW の実装における任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1687 2013-08-14 16:53 2013-06-25 Show GitHub Exploit DB Packet Storm
224902 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の mozilla::ResetDir 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1686 2013-08-14 16:51 2013-06-25 Show GitHub Exploit DB Packet Storm
224903 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の nsIDocument::GetRootElement 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1685 2013-08-14 16:50 2013-06-25 Show GitHub Exploit DB Packet Storm
224904 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の mozilla::dom::HTMLMediaElement::LookupMediaElementURITable 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1684 2013-08-14 16:48 2013-06-25 Show GitHub Exploit DB Packet Storm
224905 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-1682 2013-08-14 16:47 2013-06-25 Show GitHub Exploit DB Packet Storm
224906 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1690 2013-08-14 16:37 2013-06-25 Show GitHub Exploit DB Packet Storm
224907 3.3 注意 株式会社NTTドコモ - ドコモ海外利用アプリにおける接続処理に関する脆弱性 CWE-287
不適切な認証
CVE-2013-3659 2013-08-14 13:56 2013-08-7 Show GitHub Exploit DB Packet Storm
224908 4.6 警告 シスコシステムズ - Cisco IOS XR におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-3464 2013-08-14 13:48 2013-08-13 Show GitHub Exploit DB Packet Storm
224909 7.8 危険 IOServer - IOServer の master-station DNP3 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2790 2013-08-14 11:20 2013-08-1 Show GitHub Exploit DB Packet Storm
224910 4.7 警告 Schweitzer Engineering Laboratories - 複数の Schweitzer Engineering Laboratories の製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2798 2013-08-13 19:39 2013-08-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315581 7.2 HIGH
Network
nsqua simply_schedule_appointments The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin WordPress plugin before 1.6.7.43 does not escape template syntax provided via user input, leading to Twig Template Injec… NVD-CWE-Other
CVE-2024-7129 2024-09-28 03:26 2024-09-13 Show GitHub Exploit DB Packet Storm
315582 6.5 MEDIUM
Network
michalaugustyniak misiek_photo_album The Misiek Photo Album WordPress plugin through 1.4.3 does not have CSRF checks in some places, which could allow attackers to make logged in users delete arbitrary albums via a CSRF attack CWE-352
 Origin Validation Error
CVE-2024-7817 2024-09-28 03:26 2024-09-12 Show GitHub Exploit DB Packet Storm
315583 4.8 MEDIUM
Network
wp-master logo_manager_for_enamad The Logo Manager For Enamad WordPress plugin through 0.7.1 does not sanitise and escape in its widgets settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scri… CWE-79
Cross-site Scripting
CVE-2024-5170 2024-09-28 03:23 2024-09-17 Show GitHub Exploit DB Packet Storm
315584 5.4 MEDIUM
Network
seanschulte vikinghammer_tweet The Vikinghammer Tweet WordPress plugin through 0.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add… CWE-352
 Origin Validation Error
CVE-2024-8043 2024-09-28 03:22 2024-09-17 Show GitHub Exploit DB Packet Storm
315585 5.4 MEDIUM
Network
moc special_feed_items The Special Feed Items WordPress plugin through 1.0.1 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add… CWE-352
 Origin Validation Error
CVE-2024-8051 2024-09-28 03:19 2024-09-17 Show GitHub Exploit DB Packet Storm
315586 6.1 MEDIUM
Network
michalaugustyniak misiek_photo_album The Misiek Photo Album WordPress plugin through 1.4.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add… CWE-79
Cross-site Scripting
CVE-2024-7818 2024-09-28 03:18 2024-09-12 Show GitHub Exploit DB Packet Storm
315587 5.4 MEDIUM
Network
alaingonzalez accordion_image_menu The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin a… CWE-352
 Origin Validation Error
CVE-2024-8092 2024-09-28 03:17 2024-09-17 Show GitHub Exploit DB Packet Storm
315588 6.5 MEDIUM
Network
jakesnyder enhanced_search_box The Enhanced Search Box WordPress plugin through 0.6.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack CWE-352
 Origin Validation Error
CVE-2024-8091 2024-09-28 03:17 2024-09-17 Show GitHub Exploit DB Packet Storm
315589 4.3 MEDIUM
Network
github enterprise_server An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server, allowing an attacker to update the title, assignees, and labels of any issue inside a public repository. This was … CWE-863
 Incorrect Authorization
CVE-2024-7711 2024-09-28 03:17 2024-08-21 Show GitHub Exploit DB Packet Storm
315590 6.5 MEDIUM
Network
lucasgarcia posts_reminder The Posts reminder WordPress plugin through 0.20 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack CWE-352
 Origin Validation Error
CVE-2024-8093 2024-09-28 03:16 2024-09-17 Show GitHub Exploit DB Packet Storm