Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 9.8 緊急
Network
Gacjie Server project Gacjie Server Gacjie Server project の Gacjie Server における危険なタイプのファイルの無制限アップロードに関する脆弱性 New CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2024-2406 2025-01-23 16:31 2024-03-12 Show GitHub Exploit DB Packet Storm
2 4.3 警告
Network
Autopolis Bulgarisation for WooCommerce Autopolis の WordPress 用 Bulgarisation for WooCommerce におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2024-2395 2025-01-23 16:26 2024-03-12 Show GitHub Exploit DB Packet Storm
3 7.5 重要
Network
JeeWMS JeeWMS JeeWMS におけるパストラバーサルの脆弱性 New CWE-22
CWE-22
CVE-2024-27765 2025-01-23 15:47 2024-03-5 Show GitHub Exploit DB Packet Storm
4 4.3 警告
Network
07fly 07FlyCms 07fly の 07FlyCms におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2024-57160 2025-01-23 15:01 2025-01-16 Show GitHub Exploit DB Packet Storm
5 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2022
Microsoft Window…
Windows デジタル メディアの特権昇格の脆弱性 New CWE-125
CWE-noinfo
CVE-2025-21324 2025-01-23 15:00 2025-01-14 Show GitHub Exploit DB Packet Storm
6 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2022
Microsoft Window…
Windows カーネル メモリの情報漏えいの脆弱性 New CWE-532
CWE-noinfo
CVE-2025-21318 2025-01-23 14:47 2025-01-14 Show GitHub Exploit DB Packet Storm
7 5.3 警告
Network
aio-libs project aiosmtpd aio-libs project の aiosmtpd におけるデータの信頼性についての不十分な検証に関する脆弱性 New CWE-345
CWE-345
CVE-2024-27305 2025-01-23 14:45 2024-03-12 Show GitHub Exploit DB Packet Storm
8 6 警告
Local
フォーティネット FortiAnalyzer-BigData
FortiManager
FortiAnalyzer
複数のフォーティネット製品におけるパストラバーサルの脆弱性 New CWE-22
CWE-23
CVE-2024-32116 2025-01-23 14:43 2024-11-12 Show GitHub Exploit DB Packet Storm
9 8.8 重要
Network
フォーティネット FortiAnalyzer-BigData
FortiManager
FortiAnalyzer
複数のフォーティネット製品における脆弱性 New CWE-602
CWE-Other
CVE-2024-23666 2025-01-23 14:42 2024-11-12 Show GitHub Exploit DB Packet Storm
10 4.1 警告
Network
フォーティネット FortiAnalyzer-BigData
FortiManager
FortiAnalyzer
複数のフォーティネット製品における脆弱性 New CWE-359
CWE-Other
CVE-2023-44255 2025-01-23 14:38 2023-09-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
451 7.8 HIGH
Local
microsoft 365_apps
office
Microsoft Office Visio Remote Code Execution Vulnerability Update NVD-CWE-noinfo
CVE-2025-21356 2025-01-22 04:37 2025-01-15 Show GitHub Exploit DB Packet Storm
452 7.8 HIGH
Local
microsoft 365_apps
office
office_online_server
Microsoft Excel Remote Code Execution Vulnerability Update NVD-CWE-noinfo
CVE-2025-21354 2025-01-22 04:36 2025-01-15 Show GitHub Exploit DB Packet Storm
453 7.2 HIGH
Network
microsoft sharepoint_server Microsoft SharePoint Server Remote Code Execution Vulnerability Update NVD-CWE-noinfo
CVE-2025-21348 2025-01-22 04:30 2025-01-15 Show GitHub Exploit DB Packet Storm
454 7.8 HIGH
Local
microsoft 365_apps
office
Microsoft Office Security Feature Bypass Vulnerability Update NVD-CWE-noinfo
CVE-2025-21346 2025-01-22 04:29 2025-01-15 Show GitHub Exploit DB Packet Storm
455 - - - An improper verification of cryptographic signature vulnerability was identified in GitHub Enterprise Server that allowed signature spoofing for unauthorized internal users. Instances not utilizing … New - CVE-2025-23369 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm
456 - - - An issue in RAR Extractor - Unarchiver Free and Pro v.6.4.0 allows local attackers to inject arbitrary code potentially leading to remote control and unauthorized access to sensitive user data via th… New - CVE-2024-55504 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm
457 - - - An issue in System.Linq.Dynamic.Core Latest version v.1.4.6 allows remote access to properties on reflection types and static properties/fields. New - CVE-2024-51417 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm
458 - - - SpagoBI v3.5.1 contains multiple Stored Cross-Site Scripting (XSS) vulnerabilities in the create/edit forms of the worksheet designer function. New - CVE-2024-54795 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm
459 - - - The script input feature of SpagoBI 3.5.1 allows arbitrary code execution. New - CVE-2024-54794 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm
460 - - - A Cross-Site Request Forgery (CSRF) vulnerability has been found in SpagoBI v3.5.1 in the user administration panel. An authenticated user can lead another user into executing unwanted actions inside… New - CVE-2024-54792 2025-01-22 04:15 2025-01-22 Show GitHub Exploit DB Packet Storm