Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256181 1 注意 オラクル - Oracle Database および Oracle Application Server の Unzip コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3412 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
256182 3.2 注意 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3413 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
256183 3.6 注意 オラクル - Oracle Database の RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3410 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256184 4 警告 オラクル - Oracle Database の Logical Standby コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1996 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256185 4.9 警告 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3414 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256186 4.9 警告 オラクル - Oracle Database の Oracle Data Pump コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3411 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256187 6 警告 オラクル - Oracle Database の Application Express Application Builder コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0076 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256188 9 危険 オラクル - Oracle Database の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3415 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
256189 10 危険 オラクル - Oracle Database の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0071 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
256190 5 警告 Pidgin
Adium
レッドハット
- Pidgin および Adium の MSN プロトコルプラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0013 2010-02-10 13:39 2010-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248281 5.3 MEDIUM
Network
mozilla
debian
firefox
thunderbird
firefox_esr
debian_linux
Characters from the "Canadian Syllabics" unicode block can be mixed with characters from other unicode blocks in the addressbar instead of being rendered as their raw "punycode" form, allowing for do… CWE-20
 Improper Input Validation 
CVE-2017-7764 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248282 5.3 MEDIUM
Network
mozilla
debian
firefox
firefox_esr
thunderbird
debian_linux
Default fonts on OS X display some Tibetan characters as whitespace. When used in the addressbar as part of an IDN this can be used for domain name spoofing attacks. Note: This attack only affects OS… CWE-20
 Improper Input Validation 
CVE-2017-7763 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248283 7.5 HIGH
Network
redhat
mozilla
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
firefox
When entered directly, Reader Mode did not strip the username and password section of URLs displayed in the addressbar. This can be used for spoofing the domain of the current page. This vulnerabilit… CWE-20
 Improper Input Validation 
CVE-2017-7762 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248284 7.5 HIGH
Network
mozilla
google
firefox
android
Android intent URLs given to Firefox for Android can be used to navigate from HTTP or HTTPS URLs to local "file:" URLs, allowing for the reading of local data through a violation of same-origin polic… CWE-200
Information Exposure
CVE-2017-7759 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248285 9.1 CRITICAL
Network
redhat
mozilla
debian
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_server_aus
firefox
thunderbird
firefox_esr
debian_li…
An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vulnerability affects Firefox < 54, Firefox ESR < 52… CWE-125
Out-of-bounds Read
CVE-2017-7758 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248286 5.5 MEDIUM
Local
mozilla firefox
firefox_esr
The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), p… CWE-276
Incorrect Default Permissions 
CVE-2017-7761 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248287 7.8 HIGH
Local
mozilla firefox
firefox_esr
The Mozilla Windows updater modifies some files to be updated by reading the original file and applying changes to it. The location of the original file can be altered by a malicious user by passing … CWE-417
 Channel and Path Errors
CVE-2017-7760 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248288 9.8 CRITICAL
Network
mozilla
debian
firefox
thunderbird
firefox_esr
debian_linux
A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still being executed. This results in a potentially exploitable crash. This vulnerab… CWE-416
 Use After Free
CVE-2017-7757 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248289 9.8 CRITICAL
Network
mozilla
debian
firefox
thunderbird
firefox_esr
debian_linux
A use-after-free and use-after-scope vulnerability when logging errors from headers for XML HTTP Requests (XHR). This could result in a potentially exploitable crash. This vulnerability affects Firef… CWE-416
 Use After Free
CVE-2017-7756 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm
248290 7.8 HIGH
Local
mozilla firefox
firefox_esr
thunderbird
The Firefox installer on Windows can be made to load malicious DLL files stored in the same directory as the installer when it is run. This allows privileged execution if the installer is run with el… CWE-426
 Untrusted Search Path
CVE-2017-7755 2024-11-21 12:32 2018-06-12 Show GitHub Exploit DB Packet Storm