Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3531 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における例外的な状態のチェックに関する脆弱性 CWE-754
CWE-noinfo
CVE-2026-8091 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3532 8.1 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-125
CWE-416
CWE-787
CVE-2026-8092 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3533 8.1 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8093 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3534 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-8094 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3535 6.1 警告
Network
GitHub Enterprise Server GitHubのEnterprise Serverにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8106 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3536 7.2 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC6 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC6 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2026-8259 2026-05-13 10:21 2026-05-11 Show GitHub Exploit DB Packet Storm
3537 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC6 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC6 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2026-8264 2026-05-13 10:21 2026-05-11 Show GitHub Exploit DB Packet Storm
3538 7.2 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC6 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC6 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2026-8265 2026-05-13 10:21 2026-05-11 Show GitHub Exploit DB Packet Storm
3539 7.2 重要
Network
D-Link Systems, Inc. D-Link DNS-320 ファームウェア D-Link CorporationのD-Link DNS-320 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2026-8271 2026-05-13 10:21 2026-05-11 Show GitHub Exploit DB Packet Storm
3540 7.2 重要
Network
D-Link Systems, Inc. D-Link DNS-320 ファームウェア D-Link CorporationのD-Link DNS-320 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2026-8272 2026-05-13 10:20 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306821 - openbsd openbsd Multiple integer overflows in the glob implementation in libc in OpenBSD before 4.9 might allow context-dependent attackers to have an unspecified impact via a crafted string, related to the GLOB_APP… CWE-189
Numeric Errors
CVE-2011-2168 2024-11-21 10:27 2011-05-25 Show GitHub Exploit DB Packet Storm
306822 - dovecot dovecot script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a scrip… CWE-22
Path Traversal
CVE-2011-2167 2024-11-21 10:27 2011-05-25 Show GitHub Exploit DB Packet Storm
306823 - dovecot dovecot script-login in Dovecot 2.0.x before 2.0.13 does not follow the user and group configuration settings, which might allow remote authenticated users to bypass intended access restrictions by leveragin… CWE-16
Configuration
CVE-2011-2166 2024-11-21 10:27 2011-05-25 Show GitHub Exploit DB Packet Storm
306824 - dovecot dovecot lib-mail/message-header-parser.c in Dovecot 1.2.x before 1.2.17 and 2.0.x before 2.0.13 does not properly handle '\0' characters in header names, which allows remote attackers to cause a denial of se… CWE-20
 Improper Input Validation 
CVE-2011-1929 2024-11-21 10:27 2011-05-25 Show GitHub Exploit DB Packet Storm
306825 - apache apr-util
http_server
The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1.4.4, and the Apache HTTP Server 2.2.18, allows remote attackers to cause a denial of service (infi… CWE-399
 Resource Management Errors
CVE-2011-1928 2024-11-21 10:27 2011-05-25 Show GitHub Exploit DB Packet Storm
306826 - watchguard xcs The STARTTLS implementation in WatchGuard XCS 9.0 and 9.1 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2165 2024-11-21 10:27 2011-05-24 Show GitHub Exploit DB Packet Storm
306827 - cmu cyrus_imap_server The STARTTLS implementation in Cyrus IMAP Server before 2.4.7 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending … CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1926 2024-11-21 10:27 2011-05-24 Show GitHub Exploit DB Packet Storm
306828 - netbsd
ihji
netbsd
pmake
The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_depend##### temporary file, re… CWE-59
Link Following
CVE-2011-1920 2024-11-21 10:27 2011-05-24 Show GitHub Exploit DB Packet Storm
306829 - mediawiki mediawiki includes/User.php in MediaWiki before 1.16.5, when wgBlockDisablesLogin is enabled, does not clear certain cached data after verification of an auth token fails, which allows remote attackers to bypa… CWE-287
Improper Authentication
CVE-2011-1766 2024-11-21 10:27 2011-05-24 Show GitHub Exploit DB Packet Storm
306830 - mediawiki mediawiki Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.5, when Internet Explorer 6 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an uploaded file a… CWE-79
Cross-site Scripting
CVE-2011-1765 2024-11-21 10:27 2011-05-24 Show GitHub Exploit DB Packet Storm