Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249871 5 警告 アップル
サイバートラスト株式会社
PNG Development Group
サン・マイクロシステムズ
レッドハット
- libpng の複数のチャンクハンドラにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-5269 2012-04-18 17:57 2007-10-8 Show GitHub Exploit DB Packet Storm
249872 6.8 警告 ニュートン
アップル
サイバートラスト株式会社
Mozilla Foundation
PNG Development Group
サン・マイクロシステムズ
フェンリル株式会社
レッドハット
- libpng が適切にエレメントポインタを初期化しない脆弱性 CWE-94
コード・インジェクション
CVE-2009-0040 2012-04-18 17:54 2009-03-4 Show GitHub Exploit DB Packet Storm
249873 4.3 警告 サン・マイクロシステムズ
PNG Development Group
- libpng におけるサービス運用妨害 (DoS) 状態の脆弱性 CWE-399
リソース管理の問題
CVE-2008-3964 2012-04-18 17:52 2008-09-11 Show GitHub Exploit DB Packet Storm
249874 4.3 警告 フォーティネット
Panda Security
Doctor Web
アラジン
- 複数の製品の ELF ファイルパーサにおけるマルウェア検知を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1447 2012-04-18 17:38 2012-03-21 Show GitHub Exploit DB Packet Storm
249875 6.8 警告 Squid-cache.org - Gopher の gopherToHTML 関数におけるバッファオーバーフローの脆弱性 CWE-DesignError
CVE-2011-3205 2012-04-18 17:28 2011-08-28 Show GitHub Exploit DB Packet Storm
249876 7.8 危険 マイクロソフト
日本電気
- Microsoft .NET Framework におけるサービス運用妨害 (CPU 資源の消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3414 2012-04-18 17:07 2011-12-29 Show GitHub Exploit DB Packet Storm
249877 5 警告 リアルネットワークス - RealNetworks Helix Server および Helix Mobile Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2268 2012-04-18 15:30 2012-04-17 Show GitHub Exploit DB Packet Storm
249878 5 警告 リアルネットワークス - RealNetworks Helix Server および Helix Mobile Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2267 2012-04-18 15:22 2012-04-17 Show GitHub Exploit DB Packet Storm
249879 6.8 警告 リアルネットワークス - RealNetworks Helix Server および Helix Mobile Server におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1985 2012-04-18 15:21 2012-04-2 Show GitHub Exploit DB Packet Storm
249880 4.3 警告 リアルネットワークス - RealNetworks Helix Server および Helix Mobile Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1984 2012-04-18 15:20 2012-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195991 3.1 LOW
Network
mozilla firefox A race condition with requestPointerLock() and setTimeout() could have resulted in a user interacting with one tab when they believed they were on a separate tab. In conjunction with certain elements… CWE-362
Race Condition
CVE-2021-24000 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195992 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and granted additional privileges that should not be granted to web content. This vul… CWE-269
CWE-697
 Improper Privilege Management
 Incorrect Comparison
CVE-2021-23999 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195993 6.5 MEDIUM
Network
mozilla thunderbird
firefox
firefox_esr
Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS page. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Fir… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2021-23998 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195994 8.8 HIGH
Network
mozilla firefox Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary … CWE-681
 Incorrect Conversion between Numeric Types
CVE-2021-23997 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195995 6.5 MEDIUM
Network
mozilla firefox By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting in a spoofing attack that could have been used for phishing or other att… NVD-CWE-Other
CVE-2021-23996 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195996 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been exploited to run arbitrary code. This vulner… CWE-672
 Operation on a Resource after Expiration or Release
CVE-2021-23995 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195997 8.8 HIGH
Network
mozilla thunderbird
firefox
firefox_esr
A WebGL framebuffer was not initialized early enough, resulting in memory corruption and an out of bound write. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88. CWE-909
 Missing Initialization of Resource
CVE-2021-23994 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195998 6.5 MEDIUM
Network
mozilla thunderbird An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, … CWE-347
 Improper Verification of Cryptographic Signature
CVE-2021-23993 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
195999 4.3 MEDIUM
Network
mozilla thunderbird Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may create a crafted version of an OpenPGP key, by either replacing the original user I… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2021-23992 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm
196000 6.8 MEDIUM
Network
mozilla thunderbird If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an em… NVD-CWE-Other
CVE-2021-23991 2024-11-21 14:52 2021-06-24 Show GitHub Exploit DB Packet Storm