Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1101 7.8 重要
Local
クアルコム fastconnect 7800 ファームウェア
sc8180x-ad ファームウェア
QCA6391 ファームウェア
fastconnect 6800 ファームウェア
QCA6420 ファームウェア
sc8380xp ファームウェア
SC8180XP-ACAF ファーム…
複数のクアルコム製品における整数オーバーフローの脆弱性 CWE-190
CWE-680
CVE-2024-21470 2025-01-21 18:09 2024-04-1 Show GitHub Exploit DB Packet Storm
1102 7.8 重要
Local
クアルコム WSA8830 ファームウェア
WSA8835 ファームウェア
fastconnect 7800 ファームウェア
fastconnect 6900 ファームウェア
Snapdragon 8 Gen 1 Mobile ファームウェア
WCD9380 …
複数のクアルコム製品における古典的バッファオーバーフローの脆弱性 CWE-120
CWE-120
CVE-2023-43515 2025-01-21 18:09 2023-09-19 Show GitHub Exploit DB Packet Storm
1103 7.5 重要
Network
クアルコム c-v2x 9150 ファームウェア
Snapdragon Auto 4G Modem ファームウェア
snapdragon auto 5g modem-rf ファームウェア
複数のクアルコム製品における整数オーバーフローの脆弱性 CWE-190
CWE-680
CVE-2024-21454 2025-01-21 17:35 2024-04-1 Show GitHub Exploit DB Packet Storm
1104 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-56682 2025-01-21 15:29 2024-11-16 Show GitHub Exploit DB Packet Storm
1105 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-Other
その他
CVE-2024-53202 2025-01-21 15:27 2024-11-13 Show GitHub Exploit DB Packet Storm
1106 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-35979 2025-01-21 15:25 2024-03-8 Show GitHub Exploit DB Packet Storm
1107 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-26892 2025-01-21 15:24 2024-02-22 Show GitHub Exploit DB Packet Storm
1108 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2023-52486 2025-01-21 15:21 2023-12-23 Show GitHub Exploit DB Packet Storm
1109 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2021-47082 2025-01-21 15:17 2021-12-17 Show GitHub Exploit DB Packet Storm
1110 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-56554 2025-01-21 15:15 2024-10-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 6, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 6.1 MEDIUM
Network
westguardsolutions ws_form The WS Form LITE – Drag & Drop Contact Form Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the url parameter in all versions up to, and including, 1.10.13… CWE-79
Cross-site Scripting
CVE-2024-13509 2025-01-31 02:56 2025-01-28 Show GitHub Exploit DB Packet Storm
712 5.4 MEDIUM
Network
ilghera mailup_auto_subscription The MailUp Auto Subscription plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.0. This is due to missing or incorrect nonce validation on the … CWE-352
 Origin Validation Error
CVE-2024-13521 2025-01-31 02:41 2025-01-28 Show GitHub Exploit DB Packet Storm
713 5.4 MEDIUM
Network
wpmet elementskit The ElementsKit Pro plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the ‘url’ parameter in all versions up to, and including, 3.7.8 due to insufficient input sanitizat… CWE-79
Cross-site Scripting
CVE-2025-0321 2025-01-31 02:39 2025-01-28 Show GitHub Exploit DB Packet Storm
714 5.5 MEDIUM
Local
apple watchos
ipados
tvos
visionos
iphone_os
macos
This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7.2, visionOS 2.2, tvOS 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, macOS Sonoma 14.7.2, macOS Se… NVD-CWE-noinfo
CVE-2024-54541 2025-01-31 02:31 2025-01-28 Show GitHub Exploit DB Packet Storm
715 7.8 HIGH
Local
apple watchos
ipados
macos
tvos
iphone_os
The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, tvOS 18.2, iOS 18.2 and iPadOS 18.2. An app may be able to corrupt coprocessor memory. CWE-787
 Out-of-bounds Write
CVE-2024-54522 2025-01-31 02:26 2025-01-28 Show GitHub Exploit DB Packet Storm
716 9.1 CRITICAL
Network
apple watchos
ipados
iphone_os
The issue was addressed by removing the relevant flags. This issue is fixed in watchOS 11.2, iOS 18.2 and iPadOS 18.2. A system binary could be used to fingerprint a user's Apple Account. NVD-CWE-noinfo
CVE-2024-54512 2025-01-31 02:20 2025-01-28 Show GitHub Exploit DB Packet Storm
717 5.4 MEDIUM
Network
philantro philantro The Philantro – Donations and Donor Management plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes like 'donate' in all versions up to, and including, 5.3 du… CWE-79
Cross-site Scripting
CVE-2024-13527 2025-01-31 02:18 2025-01-28 Show GitHub Exploit DB Packet Storm
718 6.3 MEDIUM
Network
- - A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /customeredit.php. The manipul… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0873 2025-01-31 02:15 2025-01-31 Show GitHub Exploit DB Packet Storm
719 - - - In versions 3.1.0 and lower of the Splunk Supporting Add-on for Active Directory, also known as SA-ldapsearch, a vulnerable regular expression pattern could lead to a Regular Expression Denial of Ser… - CVE-2025-0367 2025-01-31 02:15 2025-01-31 Show GitHub Exploit DB Packet Storm
720 - - - A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configuration file to load from a non-existent directory. An unauthorized, locally auth… - CVE-2024-2658 2025-01-31 02:15 2025-01-31 Show GitHub Exploit DB Packet Storm