Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2024, 11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 8.2 重要
Network
Bently Nevada System 1 Part No. 3072/xx 系
System 1 6.x 系 Part No. 3060/00
3500 Rack Configuration Part No. 129133-01
3500/22…
Bently Nevada 製 3500 機械保護システムにおける強度が不十分なパスワードハッシュの使用の脆弱性 Update CWE-916
強度が不十分なパスワードハッシュの使用
CVE-2021-32997 2024-06-26 10:35 2022-02-25 Show GitHub Exploit DB Packet Storm
2 5.3 警告
Network
ジョンソンコントロールズ Metasys System Configuration Tool Johnson Controls 製 Metasys SCT および Metasys SCT Pro におけるサーバサイドリクエストフォージェリの脆弱性 Update CWE-918
サーバサイドリクエストフォージェリ
CVE-2021-36203 2024-06-26 10:16 2022-04-25 Show GitHub Exploit DB Packet Storm
3 4.8 警告
Network
TMS-Outsource Amelia TMS-Outsource の WordPress 用 Amelia におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-6225 2024-06-26 09:57 2024-06-21 Show GitHub Exploit DB Packet Storm
4 5.4 警告
Network
onetarek wp logs book onetarek の WordPress 用 wp logs book におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4477 2024-06-25 18:23 2024-06-21 Show GitHub Exploit DB Packet Storm
5 6.1 警告
Network
devnath verma widget bundle devnath verma の WordPress 用 widget bundle におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4616 2024-06-25 18:23 2024-06-21 Show GitHub Exploit DB Packet Storm
6 4.3 警告
Network
devnath verma widget bundle devnath verma の WordPress 用 widget bundle におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2024-4969 2024-06-25 18:23 2024-06-21 Show GitHub Exploit DB Packet Storm
7 4.8 警告
Network
mohsinrasool paypal pay now
 buy now
 donation and cart buttons shortcode
mohsinrasool の WordPress 用 paypal pay now, buy now, donation and cart buttons shortcode におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5447 2024-06-25 18:23 2024-06-21 Show GitHub Exploit DB Packet Storm
8 5.4 警告
Network
WPMU DEV branda WPMU DEV の WordPress 用 branda におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5191 2024-06-25 18:12 2024-06-21 Show GitHub Exploit DB Packet Storm
9 5.4 警告
Network
mohsinrasool paypal pay now
 buy now
 donation and cart buttons shortcode
mohsinrasool の WordPress 用 paypal pay now, buy now, donation and cart buttons shortcode におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5448 2024-06-25 18:12 2024-06-21 Show GitHub Exploit DB Packet Storm
10 5.4 警告
Network
darteweb dimage 360 darteweb の WordPress 用 dimage 360 におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-35774 2024-06-25 18:12 2024-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2024, 10:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1 - - - In the Linux kernel, the following vulnerability has been resolved: i40e: fix vf may be used uninitialized in this function warning To fix the regression introduced by commit 52424f974bc5, which ca… Update - CVE-2024-36020 2024-06-26 08:15 2024-05-31 Show GitHub Exploit DB Packet Storm
2 - - - In the Linux kernel, the following vulnerability has been resolved: riscv: Fix TASK_SIZE on 64-bit NOMMU On NOMMU, userspace memory can come from anywhere in physical RAM. The current definition of… Update - CVE-2024-35988 2024-06-26 08:15 2024-05-20 Show GitHub Exploit DB Packet Storm
3 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: HID: i2c-hid: remove I2C_HID_READ_PENDING flag to prevent lock-up The flag I2C_HID_READ_PENDING is used to serialize I2C operatio… Update CWE-667
 Improper Locking
CVE-2024-35997 2024-06-26 08:15 2024-05-20 Show GitHub Exploit DB Packet Storm
4 - - - In the Linux kernel, the following vulnerability has been resolved: bounds: Use the right number of bits for power-of-two CONFIG_NR_CPUS bits_per() rounds up to the next power of two when passed a … Update - CVE-2024-35983 2024-06-26 08:15 2024-05-20 Show GitHub Exploit DB Packet Storm
5 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: batman-adv: Avoid infinite loop trying to resize local TT If the MTU of one of an attached interface becomes too small to transmi… Update CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-35982 2024-06-26 08:15 2024-05-20 Show GitHub Exploit DB Packet Storm
6 - - - In the Linux kernel, the following vulnerability has been resolved: geneve: fix header validation in geneve[6]_xmit_skb syzbot is able to trigger an uninit-value in geneve_xmit() [1] Problem : Whi… Update - CVE-2024-35973 2024-06-26 08:15 2024-05-20 Show GitHub Exploit DB Packet Storm
7 - - - In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix possible memory leak in lpfc_rcv_padisc() The call to lpfc_sli4_resume_rpi() in lpfc_rcv_padisc() may return an u… Update - CVE-2024-35930 2024-06-26 08:15 2024-05-19 Show GitHub Exploit DB Packet Storm
8 - - - In the Linux kernel, the following vulnerability has been resolved: tcp: properly terminate timers for kernel sockets We had various syzbot reports about tcp timers firing after the corresponding n… Update - CVE-2024-35910 2024-06-26 08:15 2024-05-19 Show GitHub Exploit DB Packet Storm
9 - - - In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: Fix a memory leak related to the queue command DMA This dma_alloc_coherent() is undone neither in the remove… Update - CVE-2024-35833 2024-06-26 08:15 2024-05-17 Show GitHub Exploit DB Packet Storm
10 - - - In the Linux kernel, the following vulnerability has been resolved: media: tc358743: register v4l2 async device only after successful setup Ensure the device has been setup correctly before registe… Update - CVE-2024-35830 2024-06-26 08:15 2024-05-17 Show GitHub Exploit DB Packet Storm