Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Oct. 6, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
151 7.3 重要
Network
Special Text Boxes project Special Text Boxes blogcoding の WordPress 用 special text boxes におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2024-8481 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
152 4.3 警告
Network
themesflat themesflat addons for elementor themesflat の WordPress 用 themesflat addons for elementor における脆弱性 CWE-200
CWE-noinfo
CVE-2024-8516 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
153 6.5 警告
Network
mmrs151 daily prayer time mmrs151 の WordPress 用 daily prayer time における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-8621 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
154 6.1 警告
Network
madfishdigital bulk noindex & nofollow toolkit madfishdigital の WordPress 用 bulk noindex & nofollow toolkit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-8803 2024-10-3 09:58 2024-09-26 Show GitHub Exploit DB Packet Storm
155 5.4 警告
Network
graphicsly graphicsly WordPress 用 graphicsly におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-9069 2024-10-3 09:58 2024-09-25 Show GitHub Exploit DB Packet Storm
156 5 警告
Local
Synology Inc. active backup for business agent Synology Inc. の active backup for business agent における重要なデータの暗号化の欠如に関する脆弱性 CWE-311
CWE-311
CVE-2023-52948 2024-10-3 09:50 2024-09-26 Show GitHub Exploit DB Packet Storm
157 8.3 重要
Network
NVIDIA nvidia gpu operator
nvidia container toolkit
NVIDIA の nvidia container toolkit および nvidia gpu operator における Time-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
CWE-367
CVE-2024-0132 2024-10-3 09:50 2024-09-26 Show GitHub Exploit DB Packet Storm
158 6.1 警告
Network
WP Ninjas, LLC. Ninja Forms Saturday Drive の WordPress 用 Ninja Forms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-3866 2024-10-3 09:50 2024-09-25 Show GitHub Exploit DB Packet Storm
159 5.3 警告
Network
Apache Software Foundation Apache Druid Apache Software Foundation の Apache Druid における脆弱性 CWE-noinfo
情報不足
CVE-2024-45384 2024-10-3 09:49 2024-09-17 Show GitHub Exploit DB Packet Storm
160 8.8 重要
Network
WC Lovers Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible WC Lovers の WordPress 用 Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible におけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2024-8290 2024-10-3 09:49 2024-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Oct. 7, 2024, 5:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
258651 - realnetworks realplayer
realplayer_sp
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2949 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258652 - realnetworks realplayer
realplayer_sp
Buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer 12.0.0.1569 allows remote attackers to execute arbitrary co… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2951 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258653 - realnetworks realplayer
realplayer_sp
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attacke… CWE-399
 Resource Management Errors
CVE-2011-2952 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258654 - realnetworks realplayer
realplayer_sp
An unspecified ActiveX control in the browser plugin in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2953 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258655 - realnetworks realplayer
realplayer_sp
Use-after-free vulnerability in the AutoUpdate feature in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5 and RealPlayer SP 1.0 through 1.1.5, when an Embedded RealPlayer is used,… CWE-399
 Resource Management Errors
CVE-2011-2954 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258656 - realnetworks realplayer
realplayer_sp
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5, when an Embedded Rea… CWE-399
 Resource Management Errors
CVE-2011-2955 2011-10-6 11:50 2011-08-19 Show GitHub Exploit DB Packet Storm
258657 - lepton-cms
websitebaker2
lepton
websitebaker
Cross-site scripting (XSS) vulnerability in WebsiteBaker before 2.8, as used in LEPTON and possibly other products, allows remote attackers to inject arbitrary web script or HTML via unknown vectors,… CWE-79
Cross-site Scripting
CVE-2011-3385 2011-10-5 13:00 2011-09-3 Show GitHub Exploit DB Packet Storm
258658 - adobe shockwave_player IML32.dll in Adobe Shockwave Player before 11.6.1.629 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2419 2011-10-5 11:55 2011-08-12 Show GitHub Exploit DB Packet Storm
258659 - adobe shockwave_player Adobe Shockwave Player before 11.6.1.629 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2420 2011-10-5 11:55 2011-08-12 Show GitHub Exploit DB Packet Storm
258660 - adobe shockwave_player Dirapi.dll in Adobe Shockwave Player before 11.6.1.629 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted .dir media file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2421 2011-10-5 11:55 2011-08-12 Show GitHub Exploit DB Packet Storm