Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1541 7.8 重要
Local
Schneider Electric vijeo designer embedded in ecostruxure machine expert
Vijeo Designer
Schneider Electric の Vijeo Designer および vijeo designer embedded in ecostruxure machine expert における脆弱性 CWE-269
CWE-noinfo
CVE-2024-8306 2025-01-17 16:14 2024-09-11 Show GitHub Exploit DB Packet Storm
1542 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-56538 2025-01-17 16:12 2024-10-30 Show GitHub Exploit DB Packet Storm
1543 5.5 警告
Local
Debian
Linux
Linux Kernel
Debian GNU/Linux
Linux の Linux Kernel 等複数ベンダの製品における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2024-26839 2025-01-17 16:09 2024-01-25 Show GitHub Exploit DB Packet Storm
1544 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-47459 2025-01-17 16:05 2021-10-17 Show GitHub Exploit DB Packet Storm
1545 4.1 警告
Local
Hitachi Energy UNEM
FOXMAN-UN
Hitachi Energy の FOXMAN-UN および UNEM における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2024-28024 2025-01-17 16:03 2024-06-11 Show GitHub Exploit DB Packet Storm
1546 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における二重解放に関する脆弱性 CWE-415
CWE-416
CVE-2021-47123 2025-01-17 16:02 2021-05-14 Show GitHub Exploit DB Packet Storm
1547 7 重要
Local
Linux Linux Kernel Linux の Linux Kernel における競合状態に関する脆弱性 CWE-362
CWE-416
CVE-2024-56556 2025-01-17 16:00 2024-10-13 Show GitHub Exploit DB Packet Storm
1548 7 重要
Local
Linux Linux Kernel Linux の Linux Kernel における競合状態に関する脆弱性 CWE-362
CWE-416
CVE-2024-36899 2025-01-17 15:58 2024-05-9 Show GitHub Exploit DB Packet Storm
1549 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-26871 2025-01-17 15:55 2024-02-5 Show GitHub Exploit DB Packet Storm
1550 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2023-52863 2025-01-17 15:53 2023-10-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
471 - - - SPID.AspNetCore.Authentication is an AspNetCore Remote Authenticator for SPID. Authentication using Spid and CIE is based on the SAML2 standard which provides two entities: Identity Provider (IDP): t… CWE-287
Improper Authentication
CVE-2025-24894 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
472 - - - smartbanner.js is a customizable smart app banner for iOS and Android. Prior to version 1.14.1, clicking on smartbanner `View` link and navigating to 3rd party page leaves `window.opener` exposed. It… CWE-79
CWE-601
Cross-site Scripting
Open Redirect
CVE-2025-25300 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
473 - - - Foundry Artifacts was found to be vulnerable to a Denial Of Service attack due to disk being potentially filled up based on an user supplied argument (size). - CVE-2024-49589 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
474 5.4 MEDIUM
Network
jeremyshapiro fusedesk The FuseDesk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusedesk_newcase' shortcode in all versions up to, and including, 6.6.1 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-13459 2025-02-19 04:11 2025-02-12 Show GitHub Exploit DB Packet Storm
475 7.5 HIGH
Network
wpfactory customer_email_verification_for_woocommerce The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.9.5. This is due to the presence of a shortcode tha… NVD-CWE-noinfo
CVE-2024-13528 2025-02-19 03:53 2025-02-12 Show GitHub Exploit DB Packet Storm
476 6.1 MEDIUM
Network
anisha job_recruitment A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the file /_parse/load_user-profile.php. The manipulation … CWE-79
Cross-site Scripting
CVE-2025-1190 2025-02-19 03:47 2025-02-12 Show GitHub Exploit DB Packet Storm
477 7.5 HIGH
Network
wiselyhub js_help_desk The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.8.8 via the 'jssupportticketdat… NVD-CWE-noinfo
CVE-2024-13606 2025-02-19 03:46 2025-02-13 Show GitHub Exploit DB Packet Storm
478 6.1 MEDIUM
Network
tangiblewp listivo The Listivo - Classified Ads WordPress Theme theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and including, 2.3.67 due to insufficient… CWE-79
Cross-site Scripting
CVE-2024-13867 2025-02-19 03:41 2025-02-13 Show GitHub Exploit DB Packet Storm
479 7.8 HIGH
Local
dell supportassist Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leadi… CWE-59
Link Following
CVE-2025-22480 2025-02-19 03:39 2025-02-14 Show GitHub Exploit DB Packet Storm
480 - - - Duende.AccessTokenManagement is a set of .NET libraries that manage OAuth and OpenId Connect access tokens. Duende.AccessTokenManagement contains a race condition when requesting access tokens using … CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2025-26620 2025-02-19 03:15 2025-02-19 Show GitHub Exploit DB Packet Storm