Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219601 4.3 警告 Castor Project - Castor の Xerces SAX パーサのデフォルト設定における XML 外部エンティティ攻撃を実行される脆弱性 CWE-16
環境設定
CVE-2014-3004 2014-06-16 15:45 2014-05-27 Show GitHub Exploit DB Packet Storm
219602 7.5 危険 Another Awesome Stuff - ZeroCMS の zero_view_article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4034 2014-06-16 14:22 2014-06-9 Show GitHub Exploit DB Packet Storm
219603 4.3 警告 eFront Learning - Epignosis eFront の libraries/includes/personal/profile.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4033 2014-06-16 14:21 2014-05-26 Show GitHub Exploit DB Packet Storm
219604 4.3 警告 Fiyo CMS - Fiyo CMS の apps/app_comment/form_comment.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4032 2014-06-16 14:21 2014-05-30 Show GitHub Exploit DB Packet Storm
219605 3.3 注意 Fedora Project
レッドハット
- System Security Services Daemon におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0249 2014-06-16 14:06 2014-05-13 Show GitHub Exploit DB Packet Storm
219606 9.3 危険 Ricardo Villalba
mplayer2 project
- SMPlayer で使用される MPlayer2 の subreader.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3625 2014-06-16 13:59 2011-06-29 Show GitHub Exploit DB Packet Storm
219607 4.6 警告 Daiki Ueno - libfep における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3980 2014-06-16 13:52 2014-06-4 Show GitHub Exploit DB Packet Storm
219608 10 危険 Rocket Software - Rocket Servergraph の Tivoli Storage Manager 用 Admin Center における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-3915 2014-06-16 13:48 2014-06-2 Show GitHub Exploit DB Packet Storm
219609 9.3 危険 サムスン - Samsung iPOLiS Device Manager における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-3911 2014-06-16 12:42 2014-06-4 Show GitHub Exploit DB Packet Storm
219610 6.8 警告 Member Approval project - WordPress 用 Member Approval プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3850 2014-06-16 12:15 2014-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296581 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird
firefox
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15… CWE-20
 Improper Input Validation 
CVE-2013-0757 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296582 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Use-after-free vulnerability in the ListenerManager implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 1… CWE-416
 Use After Free
CVE-2013-0754 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296583 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Use-after-free vulnerability in the serializeToStream implementation in the XMLSerializer component in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird… CWE-416
 Use After Free
CVE-2013-0753 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296584 - mozilla firefox
seamonkey
Mozilla Firefox before 18.0 on Android and SeaMonkey before 2.15 do not restrict a touch event to a single IFRAME element, which allows remote attackers to obtain sensitive information or possibly co… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0751 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296585 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.1, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.1, and SeaMonkey… NVD-CWE-noinfo
CVE-2013-0749 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296586 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird
firefox
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
The gPluginHandler.handleEvent function in the plugin handler in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMon… CWE-20
 Improper Input Validation 
CVE-2013-0747 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296587 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird
firefox
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
The AutoWrapperChanger class in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not properly… CWE-94
Code Injection
CVE-2013-0745 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296588 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Integer overflow in the JavaScript implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.1… CWE-190
 Integer Overflow or Wraparound
CVE-2013-0750 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296589 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
The XBL.__proto__.toString implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17… CWE-200
Information Exposure
CVE-2013-0748 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
296590 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17.x before 17.0.2, and SeaMonkey before 2.15 d… NVD-CWE-noinfo
CVE-2013-0746 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm