Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5361 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6746 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5362 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6747 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5363 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6748 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5364 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-6749 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5365 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-6750 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5366 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6751 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5367 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6752 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5368 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6753 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5369 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6754 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5370 6.5 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-6755 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352511 - microsoft frontpage Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which allows remote attackers to read possibl… NVD-CWE-Other
CVE-1999-1052 2016-10-18 11:00 1999-08-24 Show GitHub Exploit DB Packet Storm
352512 - globetrotter flexlm The default configuration of FLEXlm license manager 6.0d, and possibly other versions, allows remote attackers to shut down the server via the lmdown command. NVD-CWE-Other
CVE-1999-1054 2016-10-18 11:00 1998-09-25 Show GitHub Exploit DB Packet Storm
352513 - tetrix tetrinet Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by connecting to port 31457 from a host with a long DNS … NVD-CWE-Other
CVE-1999-1060 2016-10-18 11:00 1999-02-17 Show GitHub Exploit DB Packet Storm
352514 - windowmaker windowmaker Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (ar… NVD-CWE-Other
CVE-1999-1064 2016-10-18 11:00 1999-08-22 Show GitHub Exploit DB Packet Storm
352515 - palm_pilot hotsync_manager Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 14238 while the manager is in n… NVD-CWE-Other
CVE-1999-1065 2016-10-18 11:00 1999-11-4 Show GitHub Exploit DB Packet Storm
352516 - sgi quake_1_server Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a "Smurf" style attack on another … NVD-CWE-Other
CVE-1999-1066 2016-10-18 11:00 1999-12-22 Show GitHub Exploit DB Packet Storm
352517 - sgi irix SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activi… NVD-CWE-Other
CVE-1999-1067 2016-10-18 11:00 1997-05-7 Show GitHub Exploit DB Packet Storm
352518 - oracle http_server Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. NVD-CWE-Other
CVE-1999-1068 2016-10-18 11:00 1997-07-23 Show GitHub Exploit DB Packet Storm
352519 - excite ews Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted passw… NVD-CWE-Other
CVE-1999-1072 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm
352520 - excite ews Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encrypted password, which makes it easier for an attacker to guess passwords via a br… NVD-CWE-Other
CVE-1999-1073 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm