Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201601 6.4 警告 Mozilla Foundation
openSUSE project
- Mozilla Firefox で使用される Mozilla Network Security Services の lib/freebl/mpi/mpi.c における暗号保護メカニズムを破られる脆弱性 CWE-310
暗号の問題
CVE-2016-1938 2016-11-22 17:49 2016-01-26 Show GitHub Exploit DB Packet Storm
201602 7.5 重要
Network
OpenSSL Project
オラクル
- OpenSSL の SRP_VBASE_get_by_user の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-0798 2016-11-22 17:47 2016-03-1 Show GitHub Exploit DB Packet Storm
201603 5.9 警告
Network
Mozilla Foundation
日立
オラクル
- Mozilla Firefox で使用される Mozilla Network Security Services におけるサーバになりすまされる脆弱性 CWE-Other
その他
CVE-2015-7575 2016-11-22 17:44 2015-12-22 Show GitHub Exploit DB Packet Storm
201604 7.5 危険 Mozilla Foundation
オラクル
- Mozilla Firefox などの製品で使用される Network Security Services の Netscape Portable Runtime における整数オーバーフローの脆弱性 CWE-119
CWE-189
CVE-2015-7183 2016-11-22 17:41 2015-11-3 Show GitHub Exploit DB Packet Storm
201605 7.5 危険 Mozilla Foundation
オラクル
- Mozilla Firefox などの製品で使用される Network Security Services におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-7181 2016-11-22 17:37 2015-11-3 Show GitHub Exploit DB Packet Storm
201606 9.3 危険 Mozilla Foundation
openSUSE project
オラクル
- Mozilla Firefox の BufferSubData 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-1935 2016-11-22 16:50 2016-01-26 Show GitHub Exploit DB Packet Storm
201607 10 危険 Mozilla Foundation
openSUSE project
オラクル
- Mozilla Firefox のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1930 2016-11-22 16:50 2016-01-26 Show GitHub Exploit DB Packet Storm
201608 8.1 重要
Local
レッドハット
Fabrice Bellard
オラクル
- QEMU の hw/nvram/fw_cfg.c の fw_cfg_write および fw_cfg_read 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1714 2016-11-22 16:49 2016-01-6 Show GitHub Exploit DB Packet Storm
201609 4.3 警告 SIL International
Debian
Fedora Project
Mozilla Foundation
- Mozilla Firefox で使用される Graphite の Libgraphite の FeatureMap.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-1523 2016-11-22 16:49 2016-02-11 Show GitHub Exploit DB Packet Storm
201610 9.3 危険 SIL International
Debian
Fedora Project
Mozilla Foundation
- Mozilla Firefox で使用される Graphite の Libgraphite の Code.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1522 2016-11-22 16:48 2016-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289751 - mozilla
canonical
opensuse
oracle
seamonkey
firefox
ubuntu_linux
opensuse
solaris
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and applicat… CWE-787
 Out-of-bounds Write
CVE-2014-1478 2024-11-21 11:04 2014-02-6 Show GitHub Exploit DB Packet Storm
289752 - hiphop_virtual_machine_for_php_project hiphop_virtual_machine_for_php The libxml_disable_entity_loader function in runtime/ext/ext_simplexml.cpp in HipHop Virtual Machine for PHP (HHVM) before 2.4.0 and 2.3.x before 2.3.3 does not properly disable a certain libxml hand… NVD-CWE-Other
CVE-2014-1439 2024-11-21 11:04 2014-02-6 Show GitHub Exploit DB Packet Storm
289753 9.8 CRITICAL
Network
mozilla
canonical
debian
redhat
fedoraproject
opensuse
suse
seamonkey
firefox
firefox_esr
thunderbird
ubuntu_linux
debian_linux
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_workstation
enterprise_linux_server…
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to c… NVD-CWE-noinfo
CVE-2014-1477 2024-11-21 11:04 2014-02-6 Show GitHub Exploit DB Packet Storm
289754 - easyxdm easyxdm Cross-site scripting (XSS) vulnerability in name.html in easyXDM before 2.4.19 allows remote attackers to inject arbitrary web script or HTML via the location.hash value. CWE-79
Cross-site Scripting
CVE-2014-1403 2024-11-21 11:04 2014-02-6 Show GitHub Exploit DB Packet Storm
289755 - fortinet fortiweb Cross-site scripting (XSS) vulnerability in the web administration interface in FortiGuard FortiWeb 5.0.3 and earlier allows remote authenticated administrators to inject arbitrary web script or HTML… CWE-79
Cross-site Scripting
CVE-2014-1458 2024-11-21 11:04 2014-02-5 Show GitHub Exploit DB Packet Storm
289756 - otrs otrs Multiple cross-site request forgery (CSRF) vulnerabilities in (1) CustomerPreferences.pm, (2) CustomerTicketMessage.pm, (3) CustomerTicketProcess.pm, and (4) CustomerTicketZoom.pm in Kernel/Modules/ … CWE-352
 Origin Validation Error
CVE-2014-1694 2024-11-21 11:04 2014-02-5 Show GitHub Exploit DB Packet Storm
289757 - otrs otrs SQL injection vulnerability in the StateGetStatesByType function in Kernel/System/State.pm in Open Ticket Request System (OTRS) 3.1.x before 3.1.19, 3.2.x before 3.2.14, and 3.3.x before 3.3.4 allows… CWE-89
SQL Injection
CVE-2014-1471 2024-11-21 11:04 2014-02-5 Show GitHub Exploit DB Packet Storm
289758 - mediawiki mediawiki MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is enabled, allows remote attackers to execute arbitrary commands via shell metac… CWE-20
 Improper Input Validation 
CVE-2014-1610 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm
289759 - media5 mediatrix_voip_gateway_4402_firmware
mediatrix_voip_gateway
Cross-site scripting (XSS) vulnerability in login.esp in the Web Management Interface in Media5 Mediatrix 4402 VoIP Gateway with firmware Dgw 1.1.13.186 and earlier allows remote attackers to inject … CWE-79
Cross-site Scripting
CVE-2014-1612 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm
289760 - anonymous_posting_project anonymous_posting Cross-site scripting (XSS) vulnerability in the Anonymous Posting module 7.x-1.2 and 7.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the contact name field. CWE-79
Cross-site Scripting
CVE-2014-1611 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm