Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208451 10 危険 Mozilla Foundation - Mozilla Firefox の js/src/vm/Xdr.cpp の XDRBuffer::grow 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-7220 2015-12-17 14:27 2015-12-15 Show GitHub Exploit DB Packet Storm
208452 5 警告 Mozilla Foundation - Mozilla Firefox の HTTP/2 の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2015-7219 2015-12-17 14:27 2015-12-15 Show GitHub Exploit DB Packet Storm
208453 5 警告 Mozilla Foundation - Mozilla Firefox の HTTP/2 の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2015-7218 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208454 4.3 警告 Mozilla Foundation - Linux GNOME プラットフォーム上で稼動する Mozilla Firefox の gdk-pixbuf 設定におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-7217 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208455 6.8 警告 Mozilla Foundation - Linux GNOME プラットフォーム上で稼動する Mozilla Firefox の gdk-pixbuf 設定におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-7216 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208456 5 警告 Mozilla Foundation - Mozilla Firefox の Web ワーカー API の実装の importScripts 関数における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2015-7215 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208457 5 警告 Mozilla Foundation - Mozilla Firefox における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2015-7214 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208458 6.8 警告 Mozilla Foundation - 64-bit プラットフォーム上で稼動する Mozilla Firefox の libstagefright における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-7213 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208459 7.5 危険 Mozilla Foundation - Mozilla Firefox の mozilla::layers::BufferTextureClient::AllocateForSurface 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-7212 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
208460 5 警告 Mozilla Foundation - Mozilla Firefox における Web サイトを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2015-7211 2015-12-17 14:26 2015-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3411 6.5 MEDIUM
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nexcess WPComplete wpcomplete allows Stored XSS.This issue affects WPComplete: from n/a through <… CWE-79
Cross-site Scripting
CVE-2026-42750 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3412 6.5 MEDIUM
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevelop Booking Manager booking-manager allows Stored XSS.This issue affects Booking Manager: f… CWE-79
Cross-site Scripting
CVE-2026-42751 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3413 7.3 HIGH
Network
- - Missing Authorization vulnerability in WC Lovers WCFM Membership wc-multivendor-membership allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WCFM Membership: … CWE-862
 Missing Authorization
CVE-2026-42753 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3414 7.1 HIGH
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in phbernard Favicon favicon-by-realfavicongenerator allows Reflected XSS.This issue affects Favicon… CWE-79
Cross-site Scripting
CVE-2026-42754 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3415 9.3 CRITICAL
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 TableOn posts-table-filterable allows Blind SQL Injection.This issue affects TableOn: … CWE-89
SQL Injection
CVE-2026-42755 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3416 9.9 CRITICAL
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ludwig You QuickWebP &#8211; Compress / Optimize Images &amp; Convert WebP | SEO Friendly quickwebp all… CWE-22
Path Traversal
CVE-2026-42756 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3417 9.9 CRITICAL
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Path Traversal.This issue affects Webi… CWE-22
Path Traversal
CVE-2026-42757 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3418 9.8 CRITICAL
Network
- - Incorrect Privilege Assignment vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Privilege Escalation.This issue affects WebinarIgnition: from n/a through < 4.08.253. CWE-266
 Incorrect Privilege Assignment
CVE-2026-42758 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3419 7.1 HIGH
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Timo Affiliate Super Assistent amazonsimpleadmin allows Stored XSS.This issue affects Affiliate S… CWE-79
Cross-site Scripting
CVE-2026-42759 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3420 7.5 HIGH
Network
- - Authentication Bypass Using an Alternate Path or Channel vulnerability in revmakx Backup and Staging by WP Time Capsule wp-time-capsule allows Password Recovery Exploitation.This issue affects Backup… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-42760 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm