Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248011 5 警告 blue-collar productions - Blue-Collar Productions i-Gallery の igallery.asp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5776 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248012 9.3 危険 BitDefender - BitDefender における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2007-5775 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248013 5 警告 flatnuke3 - Flatnuke 3 の File Manager モジュールの index.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5774 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248014 4.3 警告 flatnuke3 - Flatnuke 3 の File Manager モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5773 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248015 6 警告 flatnuke3 - Flatnuke 3 の download モジュールにおける description.it.php ファイルへ PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5772 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248016 7.5 危険 flatnuke3 - Flatnuke 3 における管理者のアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5771 2012-06-26 15:54 2007-11-1 Show GitHub Exploit DB Packet Storm
248017 5 警告 globe7 - Globe7 ソフト電話クライアントにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2007-5768 2012-06-26 15:54 2007-10-31 Show GitHub Exploit DB Packet Storm
248018 9.3 危険 AOL - AOL Radio の AmpX.dll の AOL AmpX ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5755 2012-06-26 15:54 2007-11-13 Show GitHub Exploit DB Packet Storm
248019 7.5 危険 agtc websolutions - PHP-AGTC Membership System の adduser.php におけるアカウントを作成される脆弱性 CWE-287
不適切な認証
CVE-2007-5752 2012-06-26 15:54 2007-10-31 Show GitHub Exploit DB Packet Storm
248020 5 警告 ghlab - Korean GHBoard の FlashUpload コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5739 2012-06-26 15:54 2007-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197891 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and granted additional privileges that should not be granted to web content. This vul… CWE-269
CWE-697
 Improper Privilege Management
 Incorrect Comparison
CVE-2021-23999 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197892 6.5 MEDIUM
Network
mozilla thunderbird
firefox
firefox_esr
Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS page. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Fir… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2021-23998 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197893 8.8 HIGH
Network
mozilla firefox Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary … CWE-681
 Incorrect Conversion between Numeric Types
CVE-2021-23997 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197894 6.5 MEDIUM
Network
mozilla firefox By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting in a spoofing attack that could have been used for phishing or other att… NVD-CWE-Other
CVE-2021-23996 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197895 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been exploited to run arbitrary code. This vulner… CWE-672
 Operation on a Resource after Expiration or Release
CVE-2021-23995 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197896 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
A WebGL framebuffer was not initialized early enough, resulting in memory corruption and an out of bound write. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88. CWE-909
 Missing Initialization of Resource
CVE-2021-23994 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197897 6.5 MEDIUM
Network
mozilla thunderbird An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, … CWE-347
 Improper Verification of Cryptographic Signature
CVE-2021-23993 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197898 4.3 MEDIUM
Network
mozilla thunderbird Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may create a crafted version of an OpenPGP key, by either replacing the original user I… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2021-23992 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197899 6.8 MEDIUM
Network
mozilla thunderbird If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an em… NVD-CWE-Other
CVE-2021-23991 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
197900 5.4 MEDIUM
Network
codecabin wp_go_maps The WP Google Maps WordPress plugin before 8.1.12 did not sanitise, validate of escape the Map Name when output in the Map List of the admin dashboard, leading to an authenticated Stored Cross-Site S… CWE-79
Cross-site Scripting
CVE-2021-24383 2024-11-21 14:52 2021-06-22 Show GitHub Exploit DB Packet Storm