Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240651 7.5 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンの nsWindow 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0463 2012-07-30 17:22 2012-03-13 Show GitHub Exploit DB Packet Storm
240652 5 警告 SAND STUDIO - AirDroid のログインの実装における多重ログイン防止機能を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3888 2012-07-30 16:53 2012-07-26 Show GitHub Exploit DB Packet Storm
240653 5 警告 SAND STUDIO - AirDroid における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-3887 2012-07-30 16:50 2012-07-26 Show GitHub Exploit DB Packet Storm
240654 5 警告 SAND STUDIO - AirDroid における平文データを取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3886 2012-07-30 16:39 2012-07-26 Show GitHub Exploit DB Packet Storm
240655 7.5 危険 SAND STUDIO - AirDroid のデフォルト設定におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2012-3885 2012-07-30 16:38 2012-07-26 Show GitHub Exploit DB Packet Storm
240656 5 警告 SAND STUDIO - AirDroid におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2012-3884 2012-07-30 16:35 2012-07-26 Show GitHub Exploit DB Packet Storm
240657 5 警告 Igor Sysoev - nginx/Windows におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4963 2012-07-30 16:24 2012-07-26 Show GitHub Exploit DB Packet Storm
240658 7.5 危険 シトリックス・システムズ - Citrix Provisioning Services の SoapServer サービスにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4068 2012-07-30 16:22 2012-05-1 Show GitHub Exploit DB Packet Storm
240659 4.3 警告 Palo Alto Networks - 複数の Palo Alto Networks 製品 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4043 2012-07-30 16:20 2012-07-26 Show GitHub Exploit DB Packet Storm
240660 5 警告 アップル - Apple Xcode におけるキーチェーンエントリを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3698 2012-07-30 16:19 2012-07-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267181 5.5 MEDIUM
Network
mozilla
webrtc_project
firefox
webrtc
Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or poss… NVD-CWE-Other
CVE-2016-1976 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267182 6.3 MEDIUM
Network
webrtc_project
mozilla
webrtc
firefox
Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service … CWE-362
Race Condition
CVE-2016-1975 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267183 8.8 HIGH
Network
mozilla
oracle
suse
opensuse
firefox
thunderbird
linux
linux_enterprise
leap
opensuse
The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1974 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267184 8.8 HIGH
Network
oracle
mozilla
linux
firefox
Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-a… NVD-CWE-Other
CVE-2016-1973 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267185 8.8 HIGH
Network
mozilla firefox Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vec… NVD-CWE-Other
CVE-2016-1972 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267186 8.8 HIGH
Network
mozilla firefox The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1971 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267187 8.8 HIGH
Network
mozilla firefox Integer underflow in the srtp_unprotect function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1970 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267188 8.8 HIGH
Network
sil
mozilla
graphite2
firefox
The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1969 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267189 8.8 HIGH
Network
mozilla firefox Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli comp… CWE-189
Numeric Errors
CVE-2016-1968 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
267190 6.5 MEDIUM
Network
mozilla firefox Mozilla Firefox before 45.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive inform… CWE-200
Information Exposure
CVE-2016-1967 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm