Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223741 6.8 警告 viart - ViArt Shop の cart_save.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6758 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
223742 4.3 警告 viart - ViArt Shop の manuals_search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6757 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
223743 5 警告 Canonical - Ubuntu の system-tools-backends におけるパスワードの総当たり攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2008-6792 2012-12-20 19:10 2008-11-5 Show GitHub Exploit DB Packet Storm
223744 5 警告 ZoneMinder - Fedora 上で稼動する ZoneMinder における /etc/zm.conf を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6755 2012-12-20 19:10 2009-01-7 Show GitHub Exploit DB Packet Storm
223745 7.5 危険 revou - ReVou Micro Blogging 用の TClone プラグインにおける管理者のパスワードを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6752 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
223746 6.8 警告 revou - ReVou Micro Blogging 用の TClone プラグインにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6751 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
223747 7.5 危険 shock-therapy - RSMScript における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6743 2012-12-20 19:10 2009-04-22 Show GitHub Exploit DB Packet Storm
223748 7.5 危険 Simple Machines - SMF の Load.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6741 2012-12-20 19:10 2009-04-21 Show GitHub Exploit DB Packet Storm
223749 7.5 危険 toddwoolums - Todd Woolums ASP Download 管理スクリプトにおける管理者権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-6739 2012-12-20 19:10 2009-04-21 Show GitHub Exploit DB Packet Storm
223750 5.8 警告 thaiquickcart - ThaiQuickCart の qc/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6735 2012-12-20 19:10 2009-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2091 6.5 MEDIUM
Network
mozilla firefox Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2. CWE-346
 Origin Validation Error
CVE-2026-3846 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2092 6.5 MEDIUM
Network
mozilla firefox Elusión de la política del mismo origen en el componente de análisis y cálculo de CSS. Esta vulnerabilidad afecta a Firefox < 148.0.2. CWE-346
 Origin Validation Error
CVE-2026-3846 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2093 8.8 HIGH
Network
mozilla firefox Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Firefox 148.0.2. CWE-122
Heap-based Buffer Overflow
CVE-2026-3845 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2094 8.8 HIGH
Network
mozilla firefox Desbordamiento de búfer de montón en el componente Audio/Video: Reproducción en Firefox para Android. Esta vulnerabilidad afecta a Firefox < 148.0.2. CWE-122
Heap-based Buffer Overflow
CVE-2026-3845 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2095 4.3 MEDIUM
Network
- - Malicious scripts could display attacker-controlled web content under spoofed domains in Focus for iOS by stalling a _self navigation to an invalid port and triggering an iframe redirect, causing the… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-2919 2026-04-14 00:17 2026-03-9 Show GitHub Exploit DB Packet Storm
2096 4.3 MEDIUM
Network
- - Scripts maliciosos podrían mostrar contenido web controlado por el atacante bajo dominios falsificados en Focus para iOS al detener una navegación _self a un puerto inválido y al activar una redirecc… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-2919 2026-04-14 00:17 2026-03-9 Show GitHub Exploit DB Packet Storm
2097 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited t… CWE-787
 Out-of-bounds Write
CVE-2026-2807 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2098 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Hay errores de seguridad de memoria en Firefox 147 y Thunderbird 147. Algunos de estos errores mostraron evidencia de corrupción de memoria y presumimos que, con suficiente esfuerzo, algunos de estos… CWE-787
 Out-of-bounds Write
CVE-2026-2807 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2099 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Uninitialized memory in the Graphics: Text component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. CWE-908
CWE-457
 Use of Uninitialized Resource
 Use of Uninitialized Variable
CVE-2026-2806 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2100 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Memoria no inicializada en el componente Gráficos: Texto. Esta vulnerabilidad afecta a Firefox < 148 y Thunderbird < 148. CWE-908
CWE-457
 Use of Uninitialized Resource
 Use of Uninitialized Variable
CVE-2026-2806 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm