You can search the list of vulnerabilities managed by JVN (Japan Vulnerability Note). |
|
Update Date:Jan. 11, 2025, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1851 | 7.8 |
重要
Local |
Android | Google の Android における脆弱性 |
CWE-20 CWE-noinfo Improper Input Validation noinfo |
CVE-2024-0021 | 2024-12-17 17:40 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1852 | 9.8 |
緊急
Network Google |
Android
|
Google の Android における境界外書き込みに関する脆弱性
|
CWE-20 |
CWE-787 Improper Input Validation Out-of-bounds Write
CVE-2024-0031
|
2024-12-17 17:39 |
2024-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1853 | 9.4 |
緊急
Network 日立 |
Hitachi Infrastructure Analytics Advisor |
Hitachi Ops Center Analyzer
Hitachi Infrastructure Analytics Advisor および Hitachi Ops Center Analyzer における認証バイパスの脆弱性
|
CWE-306
|
Missing Authentication for Critical Function
CVE-2024-10205
|
2024-12-17 14:52 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1854 | 5.5 |
警告
Local |
openatom | openharmony | openatom の openharmony における境界外読み取りに関する脆弱性 |
CWE-125 CWE-125 Out-of-bounds Read Out-of-bounds Read |
CVE-2023-25176 | 2024-12-17 13:58 | 2023-11-28 | Show | GitHub Exploit DB Packet Storm |
1855 | 8.8 |
重要
Network |
GStreamer | GStreamer | GStreamer におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-121
Stack-based Buffer Overflow |
CVE-2023-40476 | 2024-12-17 13:57 | 2023-08-14 | Show | GitHub Exploit DB Packet Storm |
1856 | 7.8 |
重要
Local |
openatom | openharmony | openatom の openharmony における解放済みメモリの使用に関する脆弱性 |
CWE-416 CWE-416 Use After Free Use After Free |
CVE-2023-46708 | 2024-12-17 13:57 | 2023-11-28 | Show | GitHub Exploit DB Packet Storm |
1857 | 5.7 |
警告
Network |
decidim | decidim | Ruby 用 decidim におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352 CWE-918 Origin Validation Error Server-Side Request Forgery (SSRF) |
CVE-2023-47635 | 2024-12-17 13:57 | 2023-11-7 | Show | GitHub Exploit DB Packet Storm |
1858 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
Cross-site Scripting |
CVE-2023-48650 | 2024-12-17 13:57 | 2023-11-17 | Show | GitHub Exploit DB Packet Storm |
1859 | 9.8 |
緊急
Network oretnom23 |
simple student attendance system
|
oretnom23 の simple student attendance system におけるコードインジェクションの脆弱性
|
CWE-94 |
CWE-94 Code Injection Code Injection
CVE-2023-51801
|
2024-12-17 13:57 |
2023-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1860 | 6.5 |
警告
Local |
Android | Google の Android における脆弱性 |
CWE-284 CWE-noinfo Improper Access Control noinfo |
CVE-2024-0032 | 2024-12-17 13:57 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1861 | 6.5 |
警告
Network |
Progress Software Corporation | Sitefinity | Progress Software Corporation の Sitefinity における脆弱性 |
CWE-284 CWE-noinfo Improper Access Control noinfo |
CVE-2024-1632 | 2024-12-17 13:57 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
1862 | 7.3 |
重要
Network JetBrains |
TeamCity
|
JetBrains の TeamCity におけるパストラバーサルの脆弱性
|
CWE-22 |
CWE-23 Path Traversal Relative Path Traversal
CVE-2024-27199
|
2024-12-17 13:57 |
2024-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1863 | 5.3 |
警告
Network JetBrains |
YouTrack
|
JetBrains の YouTrack におけるスプーフィングによる認証回避に関する脆弱性
|
CWE-290 |
CWE-290 Authentication Bypass by Spoofing Authentication Bypass by Spoofing
CVE-2024-28228
|
2024-12-17 13:57 |
2024-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1864 | 6.5 |
警告
Network |
JetBrains | YouTrack | JetBrains の YouTrack における認証の欠如に関する脆弱性 |
CWE-862 CWE-862 Missing Authorization Missing Authorization |
CVE-2024-28230 | 2024-12-17 13:57 | 2024-03-7 | Show | GitHub Exploit DB Packet Storm |
1865 | 6.1 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-36367 | 2024-12-17 13:57 | 2024-05-29 | Show | GitHub Exploit DB Packet Storm |
1866 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-20 CWE-79 Improper Input Validation Cross-site Scripting |
CVE-2024-4353 | 2024-12-17 13:57 | 2024-08-1 | Show | GitHub Exploit DB Packet Storm |
1867 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-8661 | 2024-12-17 13:57 | 2024-09-16 | Show | GitHub Exploit DB Packet Storm |
1868 | 6.5 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity における不正な認証に関する脆弱性 |
CWE-863 CWE-863 Incorrect Authorization Incorrect Authorization |
CVE-2024-31134 | 2024-12-17 11:29 | 2024-03-28 | Show | GitHub Exploit DB Packet Storm |
1869 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-3178 | 2024-12-17 11:29 | 2024-04-3 | Show | GitHub Exploit DB Packet Storm |
1870 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-3181 | 2024-12-17 11:29 | 2024-04-3 | Show | GitHub Exploit DB Packet Storm |
1871 | 5.5 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity における脆弱性 |
CWE-280 CWE-Other Improper Handling of Insufficient Permissions or Privileges Other |
CVE-2024-35301 | 2024-12-17 11:29 | 2024-05-16 | Show | GitHub Exploit DB Packet Storm |
1872 | 5.4 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-36363 | 2024-12-17 11:29 | 2024-05-29 | Show | GitHub Exploit DB Packet Storm |
1873 | 6.5 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity における不正な認証に関する脆弱性 |
CWE-863 CWE-863 Incorrect Authorization Incorrect Authorization |
CVE-2024-36364 | 2024-12-17 11:29 | 2024-05-29 | Show | GitHub Exploit DB Packet Storm |
1874 | 5.4 |
警告
Network |
Progress Software Corporation | Sitefinity | Progress Software Corporation の Sitefinity におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-1636 | 2024-12-17 11:28 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
1875 | 5.5 |
警告
Local |
Android | Google の Android における不正な認証に関する脆弱性 |
CWE-863 CWE-863 Incorrect Authorization Incorrect Authorization |
CVE-2024-0017 | 2024-12-17 11:28 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1876 | 5.5 |
警告
Local |
Android | Google の Android における脆弱性 |
CWE-noinfo
noinfo |
CVE-2024-0020 | 2024-12-17 11:28 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1877 | 7.8 |
重要
Local |
Android | Google の Android における脆弱性 |
CWE-284 CWE-noinfo Improper Access Control noinfo |
CVE-2024-0036 | 2024-12-17 11:27 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1878 | 7.5 |
重要
Network Google |
Android
|
Google の Android における境界外書き込みに関する脆弱性
|
CWE-122 |
CWE-787 Heap-based Buffer Overflow Out-of-bounds Write
CVE-2024-0040
|
2024-12-17 11:27 |
2024-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1879 | 7.8 |
重要
Local |
Android | Google の Android における境界外書き込みに関する脆弱性 |
CWE-787 CWE-787 Out-of-bounds Write Out-of-bounds Write |
CVE-2024-0050 | 2024-12-17 11:27 | 2024-03-11 | Show | GitHub Exploit DB Packet Storm | |
1880 | 8.8 |
重要
Network |
GStreamer | GStreamer | GStreamer における解放済みメモリの使用に関する脆弱性 |
CWE-416 CWE-416 Use After Free Use After Free |
CVE-2023-44446 | 2024-12-17 11:26 | 2023-09-28 | Show | GitHub Exploit DB Packet Storm |
1881 | 5.4 |
警告
Network |
school fees management system project | school fees management system1.0 | school fees management system project の school fees management system1.0 におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2023-51800 | 2024-12-17 11:26 | 2023-12-26 | Show | GitHub Exploit DB Packet Storm |
1882 | 3.3 |
低
Local |
株式会社集英社 | 少年ジャンプ+ 人気漫画が読める雑誌アプリ | Androidアプリ「少年ジャンプ+ 人気漫画が読める雑誌アプリ」におけるアクセス制限不備の脆弱性 |
CWE-Other
Other |
CVE-2024-54125 | 2024-12-17 11:12 | 2024-12-16 | Show | GitHub Exploit DB Packet Storm |
1883 | 8.1 |
重要
Network |
JetBrains | TeamCity | JetBrains の TeamCity における不正な認証に関する脆弱性 |
CWE-863 CWE-863 Incorrect Authorization Incorrect Authorization |
CVE-2024-36365 | 2024-12-17 10:08 | 2024-05-29 | Show | GitHub Exploit DB Packet Storm |
1884 | 6.1 |
警告
Network |
GitLab.org | GitLab | GitLab.org の GitLab におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352 CWE-352 Origin Validation Error Origin Validation Error |
CVE-2023-7045 | 2024-12-17 10:04 | 2023-12-21 | Show | GitHub Exploit DB Packet Storm |
1885 | 8.8 |
重要
Network |
GStreamer | GStreamer | GStreamer における境界外書き込みに関する脆弱性 |
CWE-122 CWE-787 Heap-based Buffer Overflow Out-of-bounds Write |
CVE-2023-44429 | 2024-12-17 10:04 | 2023-09-28 | Show | GitHub Exploit DB Packet Storm |
1886 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
Cross-site Scripting |
CVE-2023-49337 | 2024-12-17 10:04 | 2023-11-27 | Show | GitHub Exploit DB Packet Storm |
1887 | 5.3 |
警告
Network Google |
Android
|
Google の Android における境界外読み取りに関する脆弱性
|
CWE-125 |
CWE-125 Out-of-bounds Read Out-of-bounds Read
CVE-2024-0016
|
2024-12-17 10:04 |
2024-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1888 | 5.5 |
警告
Local |
Android | Google の Android における境界外読み取りに関する脆弱性 |
CWE-125 CWE-125 Out-of-bounds Read Out-of-bounds Read |
CVE-2024-0030 | 2024-12-17 10:04 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1889 | 7.8 |
重要
Local |
Android | Google の Android における NULL ポインタデリファレンスに関する脆弱性 |
CWE-476 CWE-476 NULL Pointer Dereference NULL Pointer Dereference |
CVE-2024-0035 | 2024-12-17 10:04 | 2024-02-16 | Show | GitHub Exploit DB Packet Storm | |
1890 | 7.8 |
重要
Local |
Android | Google の Android における脆弱性 |
CWE-269 CWE-noinfo Improper Privilege Management noinfo |
CVE-2024-0046 | 2024-12-17 10:04 | 2024-03-11 | Show | GitHub Exploit DB Packet Storm | |
1891 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-2179 | 2024-12-17 10:04 | 2024-03-5 | Show | GitHub Exploit DB Packet Storm |
1892 | 6.5 |
警告
Network |
GitLab.org | GitLab | GitLab.org の GitLab における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770 CWE-770 Allocation of Resources Without Limits or Throttling Allocation of Resources Without Limits or Throttling |
CVE-2024-2874 | 2024-12-17 10:04 | 2024-05-23 | Show | GitHub Exploit DB Packet Storm |
1893 | 4.8 |
警告
Network |
Concrete CMS | Concrete CMS | Concrete CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-3180 | 2024-12-17 10:04 | 2024-04-3 | Show | GitHub Exploit DB Packet Storm |
1894 | 8.8 |
重要
Adjacent |
Android | Google の Android における脆弱性 |
CWE-20 CWE-noinfo Improper Input Validation noinfo |
CVE-2024-23717 | 2024-12-17 10:04 | 2024-03-11 | Show | GitHub Exploit DB Packet Storm | |
1895 | 4.9 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity における脆弱性 |
CWE-1288 CWE-Other Improper Validation of Consistency within Input Other |
CVE-2024-31140 | 2024-12-17 10:04 | 2024-03-28 | Show | GitHub Exploit DB Packet Storm |
1896 | 6.1 |
警告
Network |
JetBrains | TeamCity | JetBrains の TeamCity におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 Cross-site Scripting Cross-site Scripting |
CVE-2024-35302 | 2024-12-17 10:04 | 2024-05-16 | Show | GitHub Exploit DB Packet Storm |
1897 | 6.5 |
警告
Network IBM |
IBM Cloud Pak for Business Automation
|
IBM の IBM Cloud Pak for Business Automation における脆弱性
|
CWE-noinfo
|
noinfo
CVE-2023-38367
|
2024-12-17 09:56 |
2023-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1898 | 5.5 |
警告
Local |
Android | Google の Android における境界外読み取りに関する脆弱性 |
CWE-125 CWE-125 Out-of-bounds Read Out-of-bounds Read |
CVE-2023-40085 | 2024-12-17 09:51 | 2023-08-9 | Show | GitHub Exploit DB Packet Storm | |
1899 | 7.5 |
重要
Network Google |
Android
|
Google の Android における証明書検証に関する脆弱性
|
CWE-295 |
CWE-295 Improper Certificate Validation Improper Certificate Validation
CVE-2023-40104
|
2024-12-17 09:51 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1900 | 7.8 |
重要
Local |
Android | Google の Android における脆弱性 |
CWE-266 CWE-noinfo Incorrect Privilege Assignment noinfo |
CVE-2023-40109 | 2024-12-17 09:51 | 2023-08-9 | Show | GitHub Exploit DB Packet Storm |