Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230621 7.8 危険 secretwars - Soldner Secret Wars におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-3135 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230622 6.8 警告 Powie - pSys の chatbox.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3131 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230623 4.3 警告 Simple Machines - OpenCart の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3130 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230624 5 警告 pivot - Pivot の search.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3128 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230625 6.5 警告 Xerox - Xerox CWW における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3122 2012-12-20 18:52 2008-07-9 Show GitHub Exploit DB Packet Storm
230626 4.3 警告 Xerox - Xerox CWW におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3121 2012-12-20 18:52 2008-07-9 Show GitHub Exploit DB Packet Storm
230627 7.5 危険 phpmotion - PHPmotion の play.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3118 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230628 6.5 警告 phpmotion - PHPmotion の update_profile.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-3117 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
230629 4.3 警告 v-webmail - V-webmail の redirect.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2008-3061 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
230630 5 警告 v-webmail - V-webmail における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3060 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196311 8.8 HIGH
Network
mozilla firefox
firefox_esr
thunderbird
Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exploitable crash. This vulnerability affects Firefox < 85, Thunderbird < 78.7, an… NVD-CWE-noinfo
CVE-2021-23960 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196312 6.1 MEDIUM
Network
mozilla firefox An XSS bug in internal error pages could have led to various spoofing attacks, including other error pages and the address bar. Note: This issue only affected Firefox for Android. Other operating sys… CWE-79
Cross-site Scripting
CVE-2021-23959 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196313 6.5 MEDIUM
Network
mozilla firefox The browser could have been confused into transferring a screen sharing state into another tab, which would leak unintended information. This vulnerability affects Firefox < 85. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-23958 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196314 7.4 HIGH
Network
mozilla firefox Navigations through the Android-specific `intent` URL scheme could have been misused to escape iframe sandbox. Note: This issue only affected Firefox for Android. Other operating systems are unaffect… NVD-CWE-noinfo
CVE-2021-23957 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196315 6.5 MEDIUM
Network
mozilla firefox An ambiguous file picker design could have confused users who intended to select and upload a single file into uploading a whole directory. This was addressed by adding a new prompt. This vulnerabili… NVD-CWE-noinfo
CVE-2021-23956 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196316 6.1 MEDIUM
Network
mozilla firefox The browser could have been confused into transferring a pointer lock state into another tab, which could have lead to clickjacking attacks. This vulnerability affects Firefox < 85. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2021-23955 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196317 8.8 HIGH
Network
mozilla firefox
firefox_esr
thunderbird
Using the new logical assignment operators in a JavaScript switch statement could have caused a type confusion, leading to a memory corruption and a potentially exploitable crash. This vulnerability … CWE-843
Type Confusion
CVE-2021-23954 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196318 4.3 MEDIUM
Network
mozilla firefox
firefox_esr
thunderbird
If a user clicked into a specifically crafted PDF, the PDF reader could be confused into leaking cross-origin information, when said information is served as chunked data. This vulnerability affects … NVD-CWE-noinfo
CVE-2021-23953 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196319 8.1 HIGH
Network
mozilla firefox When accepting a malicious intent from other installed apps, Firefox for Android accepted manifests from arbitrary file paths and allowed declaring webapp manifests for other origins. This could be u… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2021-23976 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm
196320 6.5 MEDIUM
Network
mozilla firefox The developer page about:memory has a Measure function for exploring what object types the browser has allocated and their sizes. When this function was invoked we incorrectly called the sizeof funct… CWE-862
 Missing Authorization
CVE-2021-23975 2024-11-21 14:52 2021-02-26 Show GitHub Exploit DB Packet Storm