Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4791 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6753 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4792 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6754 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4793 6.5 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-6755 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4794 7.5 重要
Network
Mozilla Foundation Mozilla Firefox Mozilla FoundationのMozilla Firefoxにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-6756 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4795 6.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないポインタのアクセスに関する脆弱性 CWE-824
初期化されていないポインタのアクセス
CVE-2026-6757 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4796 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6758 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4797 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6759 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
4798 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-6760 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
4799 8.8 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-6761 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
4800 6.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-6762 2026-04-24 11:39 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349391 - mywebserver mywebserver MyWebServer 1.0.2 allows remote attackers to determine the absolute path of the web document root via a request for a directory that does not exist, which leaks the pathname in an error message. NVD-CWE-Other
CVE-2002-1454 2016-10-18 11:27 2003-06-9 Show GitHub Exploit DB Packet Storm
349392 - stunnel stunnel stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) via SIGCHLD signal handler race conditions that cause an inconsistency in the child counter. NVD-CWE-Other
CVE-2002-1563 2016-10-18 11:27 2003-05-12 Show GitHub Exploit DB Packet Storm
349393 - openssl openssl OpenSSL 0.9.6e uses assertions when detecting buffer overflow attacks instead of less severe mechanisms, which allows remote attackers to cause a denial of service (crash) via certain messages that c… NVD-CWE-Other
CVE-2002-1568 2016-10-18 11:27 2003-11-17 Show GitHub Exploit DB Packet Storm
349394 - slashcode.com slash The quick login feature in Slash Slashcode does not redirect the user to an alternate URL when the wrong password is provided, which makes it easier for remote web sites to guess the proper passwords… NVD-CWE-Other
CVE-2002-1647 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349395 - yahoo messenger Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and possibly obtain sensitive information. NVD-CWE-Other
CVE-2002-1664 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349396 - yahoo messenger Buffer overflow in Yahoo! Messenger before February 2002 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long set_buddygrp field. NVD-CWE-Other
CVE-2002-1665 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349397 - ibm http_server IBM HTTP Server 1.0 on AS/400 allows remote attackers to obtain the path to the web root directory and other sensitive information, which is leaked in an error mesage when a request is made for a non… NVD-CWE-Other
CVE-2002-1822 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349398 - openbb openbb Open Bulletin Board (OpenBB) 1.0.0 RC3 allows remote attackers to bypass authentication and access modifier options via a direct request to moderator.php with the action and ismod parameters. NVD-CWE-Other
CVE-2002-1830 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349399 - bizdesign imagefolio The default configuration of BizDesign ImageFolio 2.23 through 2.26 does not control access to (1) admin/setup.cgi, which allows remote attackers to create an administrative account, or (2) admin/nph… NVD-CWE-Other
CVE-2002-1867 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
349400 - qnx rtos /bin/su in QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows local users to obtain sensitive information from core dump files by sending the SIGSERV (invalid memory reference) signal. NVD-CWE-Other
CVE-2002-2039 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm