Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223761 5 警告 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl の NET_Compressor::Decompress 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-6704 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223762 10 危険 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl の IPureServer::_Recieve 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6703 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223763 5 警告 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-6702 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223764 4.3 警告 TYPO3 Association - TYPO3 用の tjs_reslib エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6699 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223765 7.5 危険 sebastian baumann - TYPO3 用の Download system エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6693 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223766 7.5 危険 TYPO3 Association - TYPO3 用の nd_antispam エクステンションにおける設定を変更される脆弱性 CWE-noinfo
情報不足
CVE-2008-6690 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223767 7.5 危険 thomas waggershauser - TYPO3 用の Frontend Filemanager エクステンションにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-6685 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223768 6.8 警告 YourFreeWorld.com - Apartment Search Script の editimage.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6684 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223769 4.3 警告 YourFreeWorld.com - Apartment Search Script の listtest.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6683 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
223770 7.5 危険 quickersite - QuickerSite の asp/includes/contact.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6678 2012-12-20 19:10 2009-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2091 6.5 MEDIUM
Network
mozilla firefox Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2. CWE-346
 Origin Validation Error
CVE-2026-3846 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2092 6.5 MEDIUM
Network
mozilla firefox Elusión de la política del mismo origen en el componente de análisis y cálculo de CSS. Esta vulnerabilidad afecta a Firefox < 148.0.2. CWE-346
 Origin Validation Error
CVE-2026-3846 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2093 8.8 HIGH
Network
mozilla firefox Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Firefox 148.0.2. CWE-122
Heap-based Buffer Overflow
CVE-2026-3845 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2094 8.8 HIGH
Network
mozilla firefox Desbordamiento de búfer de montón en el componente Audio/Video: Reproducción en Firefox para Android. Esta vulnerabilidad afecta a Firefox < 148.0.2. CWE-122
Heap-based Buffer Overflow
CVE-2026-3845 2026-04-14 00:17 2026-03-11 Show GitHub Exploit DB Packet Storm
2095 4.3 MEDIUM
Network
- - Malicious scripts could display attacker-controlled web content under spoofed domains in Focus for iOS by stalling a _self navigation to an invalid port and triggering an iframe redirect, causing the… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-2919 2026-04-14 00:17 2026-03-9 Show GitHub Exploit DB Packet Storm
2096 4.3 MEDIUM
Network
- - Scripts maliciosos podrían mostrar contenido web controlado por el atacante bajo dominios falsificados en Focus para iOS al detener una navegación _self a un puerto inválido y al activar una redirecc… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-2919 2026-04-14 00:17 2026-03-9 Show GitHub Exploit DB Packet Storm
2097 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited t… CWE-787
 Out-of-bounds Write
CVE-2026-2807 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2098 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Hay errores de seguridad de memoria en Firefox 147 y Thunderbird 147. Algunos de estos errores mostraron evidencia de corrupción de memoria y presumimos que, con suficiente esfuerzo, algunos de estos… CWE-787
 Out-of-bounds Write
CVE-2026-2807 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2099 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Uninitialized memory in the Graphics: Text component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. CWE-908
CWE-457
 Use of Uninitialized Resource
 Use of Uninitialized Variable
CVE-2026-2806 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm
2100 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Memoria no inicializada en el componente Gráficos: Texto. Esta vulnerabilidad afecta a Firefox < 148 y Thunderbird < 148. CWE-908
CWE-457
 Use of Uninitialized Resource
 Use of Uninitialized Variable
CVE-2026-2806 2026-04-14 00:17 2026-02-24 Show GitHub Exploit DB Packet Storm