Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223901 6.8 警告 Pluck CMS - Pluck の data/inc/lib/pcltar.lib.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6253 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
223902 7.2 危険 smcfancontrol - smcFanControl の smc プログラムにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6252 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
223903 6.8 警告 scripts - phpFan の includes/init.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6251 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
223904 7.5 危険 scripts-for-sites - SFS EZ Top Sites の topsite.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6247 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223905 7.5 危険 scripts-for-sites - SFS EZ Webring の category.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6246 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223906 7.5 危険 scripts-for-sites - SFS EZ BIZ PRO の track.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6245 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223907 7.5 危険 scripts-for-sites - SFS EZ Gaming Cheats の view_reviews.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6244 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223908 7.5 危険 scripts-for-sites - SFS Hotscripts-like Site の showcategory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6243 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223909 7.5 危険 scripts-for-sites - SFS EZ e-store の SearchResults.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6242 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
223910 7.5 危険 scripts-for-sites - SFS Hotscripts-like Site の software-description.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6237 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1751 7.3 HIGH
Network
mozilla firefox
thunderbird
The fullscreen notification is prematurely hidden when fullscreen is re-requested quickly by the user. This could have been leveraged to perform a potential spoofing attack. This vulnerability was fi… Update CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2025-1018 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1752 7.3 HIGH
Network
mozilla firefox
thunderbird
La notificación de pantalla completa se oculta prematuramente cuando el usuario vuelve a solicitar la pantalla completa rápidamente. Esto podría haberse aprovechado para realizar un posible ataque de… Update CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2025-1018 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1753 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort so… Update CWE-787
 Out-of-bounds Write
CVE-2025-1017 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1754 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Se han detectado errores de seguridad de memoria en Firefox 134, Thunderbird 134, Firefox ESR 128.6 y Thunderbird 128.6. Algunos de estos errores mostraban evidencia de corrupción de memoria y supone… Update CWE-787
 Out-of-bounds Write
CVE-2025-1017 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1755 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption a… Update CWE-787
 Out-of-bounds Write
CVE-2025-1016 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1756 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Se han detectado errores de seguridad de memoria en Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19 y Thunderbird 128.6. Algunos de estos errores mostraban evi… Update CWE-787
 Out-of-bounds Write
CVE-2025-1016 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1757 5.4 MEDIUM
Network
mozilla thunderbird The Thunderbird Address Book URI fields contained unsanitized links. This could be used by an attacker to create and export an address book containing a malicious payload in a field. For example, in … Update NVD-CWE-noinfo
CWE-79
Cross-site Scripting
CVE-2025-1015 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1758 5.4 MEDIUM
Network
mozilla thunderbird Los campos URI de la libreta de direcciones de Thunderbird contenían enlaces no desinfectada. Un atacante podría utilizar esto para crear y exportar una libreta de direcciones que contuviera un paylo… Update NVD-CWE-noinfo
CWE-79
Cross-site Scripting
CVE-2025-1015 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1759 8.8 HIGH
Network
mozilla firefox
thunderbird
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability was fixed in Firefox 135, Firefox ESR 128.7, Thunderbird… Update CWE-295
Improper Certificate Validation 
CVE-2025-1014 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm
1760 8.8 HIGH
Network
mozilla firefox
thunderbird
La longitud del certificado no se comprobaba correctamente al añadirlo a un almacén de certificados. En la práctica, solo se procesaban los datos de confianza. Esta vulnerabilidad afecta a Firefox &l… Update CWE-295
Improper Certificate Validation 
CVE-2025-1014 2026-04-14 00:16 2025-02-4 Show GitHub Exploit DB Packet Storm