Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Oct. 6, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
151 7.3 重要
Network
Special Text Boxes project Special Text Boxes blogcoding の WordPress 用 special text boxes におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2024-8481 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
152 4.3 警告
Network
themesflat themesflat addons for elementor themesflat の WordPress 用 themesflat addons for elementor における脆弱性 CWE-200
CWE-noinfo
CVE-2024-8516 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
153 6.5 警告
Network
mmrs151 daily prayer time mmrs151 の WordPress 用 daily prayer time における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-8621 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
154 6.1 警告
Network
madfishdigital bulk noindex & nofollow toolkit madfishdigital の WordPress 用 bulk noindex & nofollow toolkit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-8803 2024-10-3 09:58 2024-09-26 Show GitHub Exploit DB Packet Storm
155 5.4 警告
Network
graphicsly graphicsly WordPress 用 graphicsly におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-9069 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
156 5 警告
Local
Synology Inc. active backup for business agent Synology Inc. の active backup for business agent における重要なデータの暗号化の欠如に関する脆弱性 CWE-311
CWE-311
CVE-2023-52948 2024-10-3 09:50 2024-09-26 Show GitHub Exploit DB Packet Storm
157 8.3 重要
Network
NVIDIA nvidia gpu operator
nvidia container toolkit
NVIDIA の nvidia container toolkit および nvidia gpu operator における Time-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
CWE-367
CVE-2024-0132 2024-10-3 09:50 2024-09-26 Show GitHub Exploit DB Packet Storm
158 6.1 警告
Network
WP Ninjas, LLC. Ninja Forms Saturday Drive の WordPress 用 Ninja Forms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-3866 2024-10-3 09:50 2024-09-25 Show GitHub Exploit DB Packet Storm
159 5.3 警告
Network
Apache Software Foundation Apache Druid Apache Software Foundation の Apache Druid における脆弱性 CWE-noinfo
情報不足
CVE-2024-45384 2024-10-3 09:49 2024-09-17 Show GitHub Exploit DB Packet Storm
160 8.8 重要
Network
WC Lovers Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible WC Lovers の WordPress 用 Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible におけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2024-8290 2024-10-3 09:49 2024-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Oct. 7, 2024, 5:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1 - - - A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. This vulnerability affects the function formSetWanPPPoE of the file /goform/formSetWanPPPoE. The manipulatio… New CWE-120
Classic Buffer Overflow
CVE-2024-9557 2024-10-7 02:15 2024-10-7 Show GitHub Exploit DB Packet Storm
2 - - - A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetEnableWizard of the file /goform/formSetEnableWizard. The manipulation o… New - CVE-2024-9556 2024-10-7 01:15 2024-10-7 Show GitHub Exploit DB Packet Storm
3 - - - A vulnerability, which was classified as critical, has been found in D-Link DIR-605L 2.13B01 BETA. Affected by this issue is the function formSetEasy_Wizard of the file /goform/formSetEasy_Wizard. Th… New CWE-120
Classic Buffer Overflow
CVE-2024-9555 2024-10-7 00:15 2024-10-7 Show GitHub Exploit DB Packet Storm
4 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Axton WP-WebAuthn allows Stored XSS.This issue affects WP-WebAuthn: from n/a through 1.3.1. New CWE-79
Cross-site Scripting
CVE-2024-47650 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
5 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YITH YITH WooCommerce Ajax Search allows SQL Injection.This issue affects YITH WooCommerce Ajax S… New CWE-89
SQL Injection
CVE-2024-47350 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
6 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExpertsio WPExperts Square For GiveWP allows SQL Injection.This issue affects WPExperts Square … New - CVE-2024-47338 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
7 - - - Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') New CWE-78
OS Command 
CVE-2024-45252 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
8 - - - Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') New - CVE-2024-45251 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
9 - - - ZKteco – CWE 200 Exposure of Sensitive Information to an Unauthorized Actor New CWE-200
Information Exposure
CVE-2024-45250 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
10 - - - Cavok – CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') New CWE-89
SQL Injection
CVE-2024-45249 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm