Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2861 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における例外的な状態のチェックに関する脆弱性 CWE-754
例外的な状態における不適切なチェック
CVE-2026-6772 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2862 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-6773 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2863 5.4 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における保護メカニズムの不具合に関する脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-6774 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2864 5.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6775 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2865 7.8 重要
Local
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6776 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2866 5.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-20
CWE-352
CWE-400
CVE-2026-6777 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2867 5.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-476
CWE-824
CVE-2026-6778 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2868 5.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-119
CWE-20
CWE-79
CVE-2026-6779 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
2869 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-6780 2026-04-24 11:38 2026-04-21 Show GitHub Exploit DB Packet Storm
2870 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-6781 2026-04-24 11:38 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314771 - - - An issue discovered in casdoor v1.636.0 allows attackers to obtain sensitive information via the ssh.InsecureIgnoreHostKey() method. - CVE-2024-41264 2024-08-8 05:35 2024-08-2 Show GitHub Exploit DB Packet Storm
314772 - - - The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some places, which could allow attackers to make logged in admin users delete users via CSRF attacks - CVE-2024-2843 2024-08-8 05:35 2024-08-1 Show GitHub Exploit DB Packet Storm
314773 - abarcar abarcar_realty_portal Multiple SQL injection vulnerabilities in Abarcar Realty Portal allow remote attackers to execute arbitrary SQL commands via the (1) neid parameter to newsdetails.php, or the (2) slid parameter to sl… CWE-89
SQL Injection
CVE-2006-5840 2024-08-8 05:15 2006-11-10 Show GitHub Exploit DB Packet Storm
314774 - marc_cagninacci mclinkscounter Multiple PHP remote file inclusion vulnerabilities in Marc Cagninacci mcLinksCounter 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the langfile parameter in (1) login.php, (2)… CWE-94
Code Injection
CVE-2006-4863 2024-08-8 05:15 2006-09-20 Show GitHub Exploit DB Packet Storm
314775 - hitweb hitweb Multiple PHP remote file inclusion vulnerabilities in Brian Fraval Hitweb 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the REP_CLASS parameter to (1) index.php, (2) arbo.php,… NVD-CWE-Other
CVE-2006-4848 2024-08-8 05:15 2006-09-19 Show GitHub Exploit DB Packet Storm
314776 - phpopenchat phpopenchat PHP remote file inclusion vulnerability in contrib/yabbse/poc.php in phpopenchat before 3.0.2 allows remote attackers to execute arbitrary PHP code via the sourcedir parameter. NOTE: this issue was … NVD-CWE-Other
CVE-2006-4677 2024-08-8 05:15 2006-09-12 Show GitHub Exploit DB Packet Storm
314777 - linux linux_kernel The source code tar archive of the Linux kernel 2.6.16, 2.6.17.11, and possibly other versions specifies weak permissions (0666 and 0777) for certain files and directories, which might allow local us… NVD-CWE-Other
CVE-2006-4663 2024-08-8 05:15 2006-09-9 Show GitHub Exploit DB Packet Storm
314778 - modulebased_cms modulebased_cms PHP remote file inclusion vulnerability in ModuleBased CMS Pre-Alpha allows remote attackers to execute arbitrary PHP code via the _SERVER parameter in (1) admin/avatar.php, (2) libs/archive.class.ph… NVD-CWE-Other
CVE-2006-4545 2024-08-8 05:15 2006-09-6 Show GitHub Exploit DB Packet Storm
314779 - joomla
mambo
jim_component PHP remote file inclusion vulnerability in index.php in the JIM component for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path paramete… NVD-CWE-Other
CVE-2006-4556 2024-08-8 05:15 2006-09-6 Show GitHub Exploit DB Packet Storm
314780 - phpprojekt phpprojekt Multiple PHP remote file inclusion vulnerabilities in the Content Management module ("Content manager") for PHProjekt 0.6.1, when register_globals is enabled, allow remote attackers to execute arbitr… NVD-CWE-Other
CVE-2006-4609 2024-08-8 05:15 2006-09-7 Show GitHub Exploit DB Packet Storm