Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242831 10 危険 Mozilla Foundation - 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-0469 2012-07-23 17:55 2012-04-24 Show GitHub Exploit DB Packet Storm
242832 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (表明違反およびメモリ破損) の脆弱性 CWE-119
バッファエラー
CVE-2012-0468 2012-07-23 17:54 2012-04-24 Show GitHub Exploit DB Packet Storm
242833 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-0467 2012-07-23 17:54 2012-04-24 Show GitHub Exploit DB Packet Storm
242834 7.2 危険 日立 - 日立の JP1/NETM/DM のパッケージセットアップマネージャにおける権限昇格の脆弱性 CWE-noinfo
情報不足
- 2012-07-23 16:14 2012-07-13 Show GitHub Exploit DB Packet Storm
242835 8.5 危険 OSIsoft - OSIsoft PI OPC DA Interface におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3008 2012-07-23 16:01 2012-07-19 Show GitHub Exploit DB Packet Storm
242836 4.3 警告 IBM - IBM Lotus Protector for Mail Security および Proventia Network Mail Security System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2955 2012-07-23 15:57 2012-07-20 Show GitHub Exploit DB Packet Storm
242837 4 警告 Moodle - Moodle における電子メールアドレスを見つけられる脆弱性 CWE-200
情報漏えい
CVE-2011-4593 2012-07-23 15:51 2011-12-6 Show GitHub Exploit DB Packet Storm
242838 5 警告 Moodle - Moodle のコマンドラインクローンの実装における IP アドレスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4592 2012-07-23 15:48 2011-12-6 Show GitHub Exploit DB Packet Storm
242839 4.3 警告 Moodle - Moodle の lib/datalib.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4591 2012-07-23 15:40 2011-12-6 Show GitHub Exploit DB Packet Storm
242840 4 警告 Moodle - Moodle の Web サービスの実装におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-4590 2012-07-23 15:32 2011-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3041 7.5 HIGH
Network
- - An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the _mb24api_getUserAccount function due to improper neutralization of special elements in a SQL SELEC… CWE-89
SQL Injection
CVE-2026-40815 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3042 7.5 HIGH
Network
- - An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the mb24alarm.php files _mb24confi_getTagAlarm function due to improper neutralization of special elem… CWE-89
SQL Injection
CVE-2026-40816 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3043 7.5 HIGH
Network
- - An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAlarmProfiles function due to improper neutralization of special elements in a SQL SELECT comma… CWE-89
SQL Injection
CVE-2026-40817 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3044 7.5 HIGH
Network
- - An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the _mb24confi_getDevice function due to improper neutralization of special elements in a SQL SELECT c… CWE-89
SQL Injection
CVE-2026-40818 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3045 7.5 HIGH
Network
- - An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the sync_data24 task due to improper neutralization of special elements in a SQL SELECT command. This … CWE-89
SQL Injection
CVE-2026-40819 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3046 4.9 MEDIUM
Network
- - A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAccountByID function due to improper neutralization of special elements in a SQL SELECT command.… CWE-89
SQL Injection
CVE-2026-40821 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3047 4.9 MEDIUM
Network
- - A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the DevSerialReset function due to improper neutralization of special elements in a SQL SELECT command.… CWE-89
SQL Injection
CVE-2026-40822 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3048 5.5 MEDIUM
Network
- - A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the DevSerialReset function due to improper neutralization of special elements in a SQL UPDATE command … CWE-89
SQL Injection
CVE-2026-40823 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3049 5.5 MEDIUM
Network
- - A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the accountstatus view userid parameter due to improper neutralization of special elements in a SQL UPD… CWE-89
SQL Injection
CVE-2026-40824 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3050 5.5 MEDIUM
Network
- - A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the accountstatus view devices parameter due to improper neutralization of special elements in a SQL UP… CWE-89
SQL Injection
CVE-2026-40825 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm