Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1511 9.8 緊急
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Window…
Windows Lightweight Directory Access Protocol (LDAP) のリモートでコードが実行される脆弱性 CWE-190
CWE-noinfo
CVE-2024-49112 2025-01-17 16:55 2024-12-10 Show GitHub Exploit DB Packet Storm
1512 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2022
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-416
CWE-591
CVE-2024-49115 2025-01-17 16:49 2024-12-10 Show GitHub Exploit DB Packet Storm
1513 6.4 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-190
CWE-noinfo
CVE-2024-28923 2025-01-17 16:46 2024-04-9 Show GitHub Exploit DB Packet Storm
1514 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2022-49035 2025-01-17 16:43 2022-09-24 Show GitHub Exploit DB Packet Storm
1515 6.7 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-28924 2025-01-17 16:41 2024-04-9 Show GitHub Exploit DB Packet Storm
1516 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-47072 2025-01-17 16:40 2021-05-14 Show GitHub Exploit DB Packet Storm
1517 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-46974 2025-01-17 16:39 2021-05-3 Show GitHub Exploit DB Packet Storm
1518 8.8 重要
Network
マイクロソフト Microsoft Visual Studio
Microsoft ODBC Driver
Microsoft SQL Server
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-190
CWE-noinfo
CVE-2024-28929 2025-01-17 16:36 2024-04-9 Show GitHub Exploit DB Packet Storm
1519 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2024-56622 2025-01-17 16:34 2024-12-4 Show GitHub Exploit DB Packet Storm
1520 5.3 警告
Network
三菱電機 (複数の製品) 複数の三菱電機製 FA 製品の Ethernet 機能におけるサービス運用妨害(DoS)の脆弱性 CWE-410
不十分なリソースプール
CVE-2023-7033 2025-01-17 16:32 2024-02-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
901 - - - @octokit/request sends parameterized requests to GitHub’s APIs with sensible defaults in browsers and Node. Starting in version 1.0.0 and prior to version 9.2.1, the regular expression `/<([^>]+)>; r… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2025-25290 2025-02-15 05:15 2025-02-15 Show GitHub Exploit DB Packet Storm
902 - - - A Stored Cross-Site Scripting (XSS) vulnerability was discovered in the manage-employee.php page of Kashipara Online Attendance Management System V1.0. This vulnerability allows remote attackers to e… - CVE-2025-26158 2025-02-15 05:15 2025-02-15 Show GitHub Exploit DB Packet Storm
903 - - - A SQL Injection vulnerability was found in /bpms/index.php in Source Code and Project Beauty Parlour Management System V1.1, which allows remote attackers to execute arbitrary code via the name POST … - CVE-2025-26157 2025-02-15 05:15 2025-02-15 Show GitHub Exploit DB Packet Storm
904 - - - SQL Injection vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive information via the /install/index.php component. - CVE-2025-25991 2025-02-15 05:15 2025-02-15 Show GitHub Exploit DB Packet Storm
905 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the fromdate POST requ… CWE-89
SQL Injection
CVE-2025-25355 2025-02-15 05:15 2025-02-14 Show GitHub Exploit DB Packet Storm
906 - - - LearnDash v6.7.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the ld-comment-body class. - CVE-2024-56939 2025-02-15 05:15 2025-02-13 Show GitHub Exploit DB Packet Storm
907 - - - LearnDash v6.7.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the materials-content class. - CVE-2024-56938 2025-02-15 05:15 2025-02-13 Show GitHub Exploit DB Packet Storm
908 - - - Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.11, 3.0.12, and 3.1.10, Rack::CommonLogger can be exploited by crafting input that includes newline character… - CVE-2025-25184 2025-02-15 05:15 2025-02-13 Show GitHub Exploit DB Packet Storm
909 - - - Rejected reason: This CVE ID is a duplicate of CVE-2025-26494. - CVE-2025-26491 2025-02-15 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
910 - - - Rejected reason: This CVE ID is a duplicate of CVE-2025-26495. - CVE-2025-26490 2025-02-15 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm