Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
151 5.4 警告
Network
Gonahkar Custom fields shortcode Gonahkar の WordPress 用 Custom fields shortcode におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2023-6809 2025-01-22 17:05 2023-12-13 Show GitHub Exploit DB Packet Storm
152 5.4 警告
Network
Savvy Wordpress Development MyWaze Savvy Wordpress Development の WordPress 用 MyWaze におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-25594 2025-01-22 17:03 2024-02-29 Show GitHub Exploit DB Packet Storm
153 7.8 重要
Local
マイクロソフト Microsoft SharePoint Enterprise Server
Microsoft SharePoint Server
Microsoft SharePoint Server のリモートでコードが実行される脆弱性 New CWE-20
CWE-noinfo
CVE-2025-21344 2025-01-22 17:00 2025-01-14 Show GitHub Exploit DB Packet Storm
154 8.8 重要
Network
ZyXEL nwa90ax pro ファームウェア
nwa1123acv3 ファームウェア
nwa220ax-6e ファームウェア
WAX610D ファームウェア
wax300h ファームウェア
WAX510D ファームウェア
wac500h ファームウェア
wac500 ファ…
複数の ZyXEL 製品における脆弱性 New CWE-269
CWE-noinfo
CVE-2024-12398 2025-01-22 16:58 2024-12-10 Show GitHub Exploit DB Packet Storm
155 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows 10
Microsoft Window…
Windows デジタル メディアの特権昇格の脆弱性 New CWE-125
CWE-noinfo
CVE-2025-21341 2025-01-22 16:57 2025-01-14 Show GitHub Exploit DB Packet Storm
156 5.3 警告
Adjacent
ZyXEL ATP500 ファームウェア
ATP800 ファームウェア
ATP100 ファームウェア
atp700 ファームウェア
atp100w ファームウェア
ATP200 ファームウェア
USG FLEX 100H ファームウェア
usg flex 1…
複数の ZyXEL 製品における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2023-6397 2025-01-22 16:54 2023-11-30 Show GitHub Exploit DB Packet Storm
157 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2025
Microsoft Windows Server&…
Windows 仮想化ベース セキュリティ (VBS) のセキュリティ機能バイパスの脆弱性 New CWE-284
CWE-noinfo
CVE-2025-21340 2025-01-22 16:54 2025-01-14 Show GitHub Exploit DB Packet Storm
158 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2024-57801 2025-01-22 16:52 2024-12-23 Show GitHub Exploit DB Packet Storm
159 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2024-57882 2025-01-22 16:52 2024-12-30 Show GitHub Exploit DB Packet Storm
160 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における整数オーバーフローの脆弱性 New CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2024-57890 2025-01-22 16:52 2024-12-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
721 7.5 HIGH
Network
- - IBM Safer Payments 6.4.0.00 through 6.4.2.07, 6.5.0.00 through 6.5.0.05, and 6.6.0.00 through 6.6.0.03 could allow a remote attacker to cause a denial of service due to improper allocation of resourc… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-45662 2025-01-19 02:15 2025-01-19 Show GitHub Exploit DB Packet Storm
722 6.5 MEDIUM
Network
- - IBM Robotic Process Automation 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 and IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 could allow … CWE-602
 Client-Side Enforcement of Server-Side Security
CVE-2024-49824 2025-01-19 01:15 2025-01-19 Show GitHub Exploit DB Packet Storm
723 5.3 MEDIUM
Network
- - IBM Concert 1.0.0, 1.0.1, and 1.0.2 is vulnerable to sensitive information disclosure through specially crafted API Calls. CWE-213
 Exposure of Sensitive Information Due to Incompatible Policies
CVE-2024-49354 2025-01-19 01:15 2025-01-19 Show GitHub Exploit DB Packet Storm
724 8.1 HIGH
Network
- - IBM ICP - Voice Gateway 1.0.2, 1.0.2.4, 1.0.3, 1.0.4, 1.0.5, 1.0.6. 1.0.7, 1.0.7.1, and 1.0.8 could allow remote attacker to send specially crafted XML statements, which would allow them to attacker … CWE-91
Blind XPath Injection
CVE-2024-47113 2025-01-19 01:15 2025-01-19 Show GitHub Exploit DB Packet Storm
725 5.3 MEDIUM
Network
- - IBM Jazz for Service Management 1.1.3 through 1.1.3.22 could allow a remote attacker to obtain sensitive information from improper access restrictions that could aid in further attacks against the sy… CWE-552
 Files or Directories Accessible to External Parties
CVE-2024-47106 2025-01-19 01:15 2025-01-19 Show GitHub Exploit DB Packet Storm
726 2.4 LOW
Network
- - A vulnerability, which was classified as problematic, was found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /photo-gallery of the component Photo Gallery … CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0560 2025-01-19 00:15 2025-01-19 Show GitHub Exploit DB Packet Storm
727 6.7 MEDIUM
Local
- - IBM Robotic Process Automation 21.0.0 through 21.0.7.17 and 23.0.0 through 23.0.18 could allow a local user to escalate their privileges. All files in the install inherit the file permissions of the … CWE-277
 Insecure Inherited Permissions
CVE-2024-51448 2025-01-19 00:15 2025-01-19 Show GitHub Exploit DB Packet Storm
728 4.4 MEDIUM
Network
- - IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials. CWE-1323
CVE-2024-49338 2025-01-19 00:15 2025-01-19 Show GitHub Exploit DB Packet Storm
729 2.4 LOW
Network
- - A vulnerability, which was classified as problematic, has been found in Campcodes School Management Software 1.0. This issue affects some unknown processing of the file /create-id-card of the compone… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0559 2025-01-18 23:15 2025-01-18 Show GitHub Exploit DB Packet Storm
730 6.3 MEDIUM
Network
- - A vulnerability classified as critical was found in TDuckCloud tduck-platform up to 4.0. This vulnerability affects the function QueryProThemeRequest of the file src/main/java/com/tduck/cloud/form/re… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0558 2025-01-18 22:15 2025-01-18 Show GitHub Exploit DB Packet Storm