Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232011 7.5 危険 smartsitecms - SmartSiteCMS の admin.php における認証を回避される脆弱性 - CVE-2006-7074 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
232012 7.5 危険 socketwiz - Socketwiz Bookmarks の smarty_config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7069 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
232013 7.5 危険 tinyphpforum - TinyPHPforum の profile.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7063 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232014 9.3 危険 scriptsez.net - Scriptsez.net E-Dating System におけるプライベートメッセージを読まれる脆弱性 - CVE-2006-7061 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232015 5.8 警告 サン・マイクロシステムズ - Sun Solaris の .iked などに使用されている libike ライブラリにおける PKCS #1 v1.5 署名を偽造される脆弱性 CWE-DesignError
CVE-2006-7140 2012-12-20 18:18 2006-11-27 Show GitHub Exploit DB Packet Storm
232016 5 警告 scriptsez.net - Scriptsez.net E-Dating System の cindex.php におけるフルパスを取得される脆弱性 - CVE-2006-7060 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232017 4.3 警告 scriptsez.net - Scriptsez.net E-Dating System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-7059 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232018 4.3 警告 Ando Saabas - Sphider におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7058 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232019 7.5 危険 Ando Saabas - Sphider の search.php における SQL インジェクションの脆弱性 - CVE-2006-7057 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
232020 6.8 警告 sweetphp - TotalCalendar の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7055 2012-12-20 18:18 2007-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291631 - mozilla firefox
seamonkey
thunderbird_esr
thunderbird
Buffer overflow in the nsFloatManager::GetFlowArea function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1732 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291632 - mozilla firefox Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 on Android allows attackers to execute arbitrary code via a Trojan horse .so file in a world-writabl… CWE-20
 Improper Input Validation 
CVE-2013-1731 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291633 - mozilla thunderbird
seamonkey
firefox
thunderbird_esr
Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly handle movement of XBL-backed nodes… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1730 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291634 - mozilla firefox The WebGL implementation in Mozilla Firefox before 24.0, when NVIDIA graphics drivers are used on Mac OS X, allows remote attackers to obtain desktop-screenshot data by reading from a CANVAS element. CWE-200
Information Exposure
CVE-2013-1729 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291635 - mozilla seamonkey
thunderbird
firefox
The IonMonkey JavaScript engine in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21, when Valgrind mode is used, does not properly initialize memory, which makes it eas… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1728 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291636 - mozilla firefox Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by usin… CWE-79
Cross-site Scripting
CVE-2013-1727 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291637 - mozilla thunderbird_esr
thunderbird
firefox
seamonkey
Mozilla Updater in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 does not ensure exclusive access… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1726 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291638 - mozilla firefox
thunderbird_esr
seamonkey
thunderbird
Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not ensure that initialization occurs for JavaSc… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1725 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291639 - mozilla seamonkey
firefox
thunderbird
Use-after-free vulnerability in the mozilla::dom::HTMLFormElement::IsDefaultSubmitElement function in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21 allows remote att… CWE-399
 Resource Management Errors
CVE-2013-1724 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm
291640 - mozilla thunderbird
firefox
seamonkey
The NativeKey widget in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21 processes key messages after destruction by a dispatched event listener, which allows remote at… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1723 2024-11-21 10:50 2013-09-18 Show GitHub Exploit DB Packet Storm