Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229381 2.1 注意 RivetCode Software - RivetTracker におけるパスワードを特定される脆弱性 CWE-310
暗号の問題
CVE-2008-7207 2012-12-20 19:10 2009-09-11 Show GitHub Exploit DB Packet Storm
229382 4.3 警告 stefan ritt - ELOG における脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-7206 2012-12-20 19:10 2009-09-11 Show GitHub Exploit DB Packet Storm
229383 4.3 警告 VirtueMart - VirtueMart の製品ビュー機能における任意のファイルを読み取られる脆弱性 CWE-20
不適切な入力確認
CVE-2008-7205 2012-12-20 19:10 2009-09-11 Show GitHub Exploit DB Packet Storm
229384 6.8 警告 VirtueMart - VirtueMart におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-7204 2012-12-20 19:10 2009-09-11 Show GitHub Exploit DB Packet Storm
229385 5 警告 valve software - Valve Software Half-Life Counter-Strike におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-7203 2012-12-20 19:10 2009-09-11 Show GitHub Exploit DB Packet Storm
229386 6.8 警告 PHPKIT - PHPKIT におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-7193 2012-12-20 19:10 2009-09-9 Show GitHub Exploit DB Packet Storm
229387 6.8 警告 woltlab - wBB の index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-7192 2012-12-20 19:10 2009-09-9 Show GitHub Exploit DB Packet Storm
229388 5 警告 pps.jussieu - Polipo におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-7191 2012-12-20 19:10 2009-09-9 Show GitHub Exploit DB Packet Storm
229389 5 警告 rittwick banerjee - Telephone Directory 2008 の del_query1.php における任意の連絡先を削除される脆弱性 CWE-20
不適切な入力確認
CVE-2008-7180 2012-12-20 19:10 2009-09-8 Show GitHub Exploit DB Packet Storm
229390 7.5 危険 XOOPS - XOOPS 用の Uploader モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-7178 2012-12-20 19:10 2009-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3481 7.5 HIGH
Network
mozilla firefox
thunderbird
Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-400
 Uncontrolled Resource Consumption
CVE-2026-8968 2026-05-20 23:56 2026-05-19 Show GitHub Exploit DB Packet Storm
3482 8.1 HIGH
Network
mozilla firefox
thunderbird
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-693
 Protection Mechanism Failure
CVE-2026-8969 2026-05-20 23:55 2026-05-19 Show GitHub Exploit DB Packet Storm
3483 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-942
 Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-8948 2026-05-20 23:53 2026-05-19 Show GitHub Exploit DB Packet Storm
3484 7.5 HIGH
Network
mozilla firefox
thunderbird
Integer overflow in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-190
 Integer Overflow or Wraparound
CVE-2026-8949 2026-05-20 23:49 2026-05-19 Show GitHub Exploit DB Packet Storm
3485 6.5 MEDIUM
Network
mozilla firefox Spoofing issue in the Toolbar component in Firefox for Android. This vulnerability was fixed in Firefox 151. CWE-290
 Authentication Bypass by Spoofing
CVE-2026-8951 2026-05-20 23:48 2026-05-19 Show GitHub Exploit DB Packet Storm
3486 6.5 MEDIUM
Network
mozilla firefox
thunderbird
Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-346
 Origin Validation Error
CVE-2026-8971 2026-05-20 23:41 2026-05-19 Show GitHub Exploit DB Packet Storm
3487 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-190
 Integer Overflow or Wraparound
CVE-2026-8956 2026-05-20 23:31 2026-05-19 Show GitHub Exploit DB Packet Storm
3488 9.6 CRITICAL
Network
mozilla firefox
thunderbird
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-20
CWE-119
CWE-693
 Improper Input Validation 
Incorrect Access of Indexable Resource ('Range Error') 
 Protection Mechanism Failure
CVE-2026-8959 2026-05-20 23:28 2026-05-19 Show GitHub Exploit DB Packet Storm
3489 8.8 HIGH
Network
- - Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a SourcePolicyInterface that allows attackers with template rendering capabilities to pass arbitrary PH… CWE-693
 Protection Mechanism Failure
CVE-2026-24425 2026-05-20 23:25 2026-05-20 Show GitHub Exploit DB Packet Storm
3490 7.3 HIGH
Network
- - An authorization vulnerability exists in Innoshop 0.6.0. After logging into the frontend, an attacker can directly access backend application interfaces, leading to further dangerous operations. CWE-284
Improper Access Control
CVE-2026-39250 2026-05-20 23:25 2026-05-20 Show GitHub Exploit DB Packet Storm