Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1591 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2021-47093 2025-01-17 13:45 2021-12-23 Show GitHub Exploit DB Packet Storm
1592 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2023-52808 2025-01-17 13:45 2023-09-21 Show GitHub Exploit DB Packet Storm
1593 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2024-26829 2025-01-17 13:45 2024-02-1 Show GitHub Exploit DB Packet Storm
1594 4.7 警告
Local
Linux Linux Kernel Linux の Linux Kernel における競合状態に関する脆弱性 CWE-362
CWE-476
CVE-2024-35977 2025-01-17 13:45 2024-04-11 Show GitHub Exploit DB Packet Storm
1595 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2024-56534 2025-01-17 13:45 2024-11-6 Show GitHub Exploit DB Packet Storm
1596 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-56605 2025-01-17 13:45 2024-10-15 Show GitHub Exploit DB Packet Storm
1597 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2021-47455 2025-01-17 13:45 2021-10-20 Show GitHub Exploit DB Packet Storm
1598 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-26749 2025-01-17 13:45 2024-02-19 Show GitHub Exploit DB Packet Storm
1599 7.5 重要
Network
PowerDNS
レッドハット
マイクロソフト
thekelleys
NLnet Labs
CZ.NIC
Fedora Project
日本電気
ISC, Inc.
unbound
Microsoft Windows Server 2019
Dnsmasq
Red Hat Enterprise Linux
ESMPRO/ServerAgent
Microsoft Windows Server 2016
Microsoft W…
MITRE: CVE-2023-50387 DNSSEC verification complexity can be exploited to exhaust CPU resources and stall DNS resolvers CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2023-50387 2025-01-17 13:21 2023-12-7 Show GitHub Exploit DB Packet Storm
1600 7.5 重要
Network
NetApp
日本電気
ISC, Inc.
Active IQ Unified Manager
ESMPRO/ServerAgent
NEC Multimedia OLAP for 映像分析サービス
BIND
ISC, Inc. の BIND 等複数ベンダの製品における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
CWE-789
CVE-2023-6516 2025-01-17 13:19 2023-12-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 11, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
231 3.3 LOW
Local
- - IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the system. CWE-209
Information Exposure Through an Error Message
CVE-2024-56467 2025-02-7 06:15 2025-02-7 Show GitHub Exploit DB Packet Storm
232 7.1 HIGH
Network
- - IBM EntireX 11.1 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. An authenticated attacker could exploit this vulnerability to expose sensitive information or… CWE-611
XXE
CVE-2024-54171 2025-02-7 06:15 2025-02-7 Show GitHub Exploit DB Packet Storm
233 - - - A SQL Injection vulnerability exists in the /feed/insert.json endpoint of the Emoncms project >= 11.6.9. The vulnerability is caused by improper handling of user-supplied input in the data query para… - CVE-2025-22992 2025-02-7 06:15 2025-02-7 Show GitHub Exploit DB Packet Storm
234 - - - Cross Site Scripting vulnerability in DouPHP v.1.8 Release 20231203 allows attackers to execute arbitrary code via a crafted payload injected into the description parameter in /admin/article.php - CVE-2024-57599 2025-02-7 06:15 2025-02-7 Show GitHub Exploit DB Packet Storm
235 - - - Tiny File Manager v2.4.7 and below was discovered to contain a Cross Site Scripting (XSS) vulnerability. This vulnerability allows attackers to execute arbitrary code via a crafted payload injected i… - CVE-2022-40490 2025-02-7 06:15 2025-02-7 Show GitHub Exploit DB Packet Storm
236 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 134 and Thunderbird 134. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited t… CWE-787
 Out-of-bounds Write
CVE-2025-1020 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
237 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort so… CWE-787
 Out-of-bounds Write
CVE-2025-1017 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
238 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption a… CWE-787
 Out-of-bounds Write
CVE-2025-1016 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
239 8.8 HIGH
Network
mozilla firefox
thunderbird
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird … CWE-295
Improper Certificate Validation 
CVE-2025-1014 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
240 6.5 MEDIUM
Network
mozilla thunderbird Thunderbird displayed an incorrect sender address if the From field of an email used the invalid group name syntax that is described in CVE-2024-49040. This vulnerability affects Thunderbird < 128.7 … NVD-CWE-noinfo
CVE-2025-0510 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm