Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1111 5.5 警告
Local
Linux
Debian
Linux Kernel
Debian GNU/Linux
Linux の Linux Kernel 等複数ベンダの製品におけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2024-27059 2025-01-21 15:13 2024-03-2 Show GitHub Exploit DB Packet Storm
1112 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2022-48663 2025-01-21 15:09 2022-09-20 Show GitHub Exploit DB Packet Storm
1113 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2021-47199 2025-01-21 15:07 2021-11-16 Show GitHub Exploit DB Packet Storm
1114 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Access
Microsoft Access のリモート コードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21395 2025-01-21 14:52 2025-01-14 Show GitHub Exploit DB Packet Storm
1115 7.8 重要
Local
クアルコム WSA8830 ファームウェア
Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB
 BB) ファームウェア
sc8380xp ファームウェア
WCD9385 ファームウェア
fastconnect …
複数のクアルコム製品における脆弱性 CWE-284
CWE-Other
CVE-2024-23360 2025-01-21 14:42 2024-06-3 Show GitHub Exploit DB Packet Storm
1116 6.3 警告
Network
マイクロソフト Microsoft SharePoint Enterprise Server
Microsoft SharePoint Server
Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
CWE-noinfo
CVE-2025-21393 2025-01-21 14:30 2025-01-14 Show GitHub Exploit DB Packet Storm
1117 5.5 警告
Network
Alex Kirk Friends Alex Kirk の Friends におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2024-1978 2025-01-21 14:22 2024-02-29 Show GitHub Exploit DB Packet Storm
1118 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Office のリモート コードが実行される脆弱性 CWE-426
CWE-noinfo
CVE-2025-21365 2025-01-21 14:21 2025-01-14 Show GitHub Exploit DB Packet Storm
1119 4.3 警告
Network
Really Simple Plugins Complianz - GDPR/CCPA Cookie Consent Complianz の WordPress 用 Complianz - GDPR/CCPA Cookie Consent におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1592 2025-01-21 14:18 2024-03-2 Show GitHub Exploit DB Packet Storm
1120 5 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chrome ベース) のセキュリティ機能のバイパスの脆弱性 CWE-94
CWE-noinfo
CVE-2024-29991 2025-01-21 14:15 2024-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
421 5.0 MEDIUM
Local
- - IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-45657 2025-02-5 06:15 2025-02-5 Show GitHub Exploit DB Packet Storm
422 5.9 MEDIUM
Network
- - IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized acto… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2024-43187 2025-02-5 06:15 2025-02-5 Show GitHub Exploit DB Packet Storm
423 6.1 MEDIUM
Network
- - IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript cod… CWE-79
Cross-site Scripting
CVE-2024-40700 2025-02-5 06:15 2025-02-5 Show GitHub Exploit DB Packet Storm
424 6.5 MEDIUM
Network
- - IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transm… CWE-352
 Origin Validation Error
CVE-2024-35138 2025-02-5 06:15 2025-02-5 Show GitHub Exploit DB Packet Storm
425 - - - The Widget4Call WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against … - CVE-2024-13099 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm
426 - - - The WordPress Email Newsletter WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be … - CVE-2024-13098 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm
427 - - - The WP Finance WordPress plugin through 1.3.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against h… - CVE-2024-13097 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm
428 - - - The WP Finance WordPress plugin through 1.3.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored … - CVE-2024-13096 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm
429 - - - The Responsive iframe WordPress plugin through 1.2.0 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow user… - CVE-2024-12768 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm
430 - - - The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only mean… - CVE-2025-0938 2025-02-5 06:15 2025-02-1 Show GitHub Exploit DB Packet Storm