Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1611 8.8 重要
Network
oretnom23 Laundry Shop Management System Oretnom23 の Laundry Shop Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-3466 2025-01-17 12:08 2024-04-8 Show GitHub Exploit DB Packet Storm
1612 4.3 警告
Network
Brizy brizy Brizy の WordPress 用 brizy における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-3711 2025-01-17 12:02 2024-05-23 Show GitHub Exploit DB Packet Storm
1613 9.8 緊急
Network
Apache Software Foundation Apache Xerces-C++ Apache Software Foundation の Apache Xerces-C++ における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-23807 2025-01-17 12:02 2024-02-29 Show GitHub Exploit DB Packet Storm
1614 5.3 警告
Network
MantisBT Group MantisBT MantisBT Group の MantisBT における脆弱性 CWE-200
CWE-noinfo
CVE-2024-34080 2025-01-17 12:02 2024-05-14 Show GitHub Exploit DB Packet Storm
1615 8.8 重要
Network
Brizy brizy Brizy の WordPress 用 brizy における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2024-1311 2025-01-17 11:58 2024-03-13 Show GitHub Exploit DB Packet Storm
1616 5.3 警告
Network
zestard admin side data storage for contact form 7 zestard の WordPress 用 admin side data storage for contact form 7 における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-1779 2025-01-17 11:58 2024-02-23 Show GitHub Exploit DB Packet Storm
1617 8.8 重要
Network
Progress Software Corporation telerik report server Progress Software Corporation の telerik report server における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
CWE-502
CVE-2024-1800 2025-01-17 11:58 2024-03-20 Show GitHub Exploit DB Packet Storm
1618 7.5 重要
Network
Ivanti Avalanche Ivanti の Avalanche におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2024-13180 2025-01-17 11:58 2025-01-14 Show GitHub Exploit DB Packet Storm
1619 - - Belledonne Communications Linphone-Desktop Belledonne Communications 製 Linphone-Desktop における NULL ポインタ参照の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-0430 2025-01-17 11:56 2025-01-16 Show GitHub Exploit DB Packet Storm
1620 9.8 緊急
Network
Apache Software Foundation hertzbeat Apache Software Foundation の hertzbeat におけるインジェクションに関する脆弱性 CWE-74
CWE-74
CVE-2023-51653 2025-01-17 11:54 2023-12-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
901 - - - Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code… - CVE-2025-1414 2025-02-18 23:15 2025-02-18 Show GitHub Exploit DB Packet Storm
902 4.8 MEDIUM
Adjacent
- - URL Redirection to Untrusted Site ('Open Redirect') vulnerability in HAVELSAN Liman MYS allows Cross-Site Flashing.This issue affects Liman MYS: before 2.1.1 - 1010. CWE-601
Open Redirect
CVE-2025-1269 2025-02-18 23:15 2025-02-18 Show GitHub Exploit DB Packet Storm
903 - - - An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user data import/export function of NTG 6 head units. To perform this attack, local… - CVE-2024-37603 2025-02-18 23:15 2025-02-14 Show GitHub Exploit DB Packet Storm
904 - - - An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in the user data import/export function of NTG 6 head units. To perform this attack,… - CVE-2024-37601 2025-02-18 23:15 2025-02-14 Show GitHub Exploit DB Packet Storm
905 - - - Dedecms 5.71sp1 and earlier is vulnerable to URL redirect. In the web application, a logic error does not judge the input GET request resulting in URL redirection. - CVE-2024-57241 2025-02-18 23:15 2025-02-12 Show GitHub Exploit DB Packet Storm
906 - - - Issue summary: Clients using RFC7250 Raw Public Keys (RPKs) to authenticate a server may fail to notice that the server was not authenticated, because handshakes don't abort as expected when the SSL_… - CVE-2024-12797 2025-02-18 23:15 2025-02-12 Show GitHub Exploit DB Packet Storm
907 - - - PAM-PKCS#11 is a Linux-PAM login module that allows a X.509 certificate based user login. Prior to version 0.6.13, if cert_policy is set to none (the default value), then pam_pkcs11 will only check i… - CVE-2025-24032 2025-02-18 23:15 2025-02-11 Show GitHub Exploit DB Packet Storm
908 5.7 MEDIUM
Adjacent
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Komtera Technolgies KLog Server allows Manipulating Web Input to File System Calls.This issue affects K… CWE-22
Path Traversal
CVE-2025-1035 2025-02-18 21:15 2025-02-18 Show GitHub Exploit DB Packet Storm
909 - - - Via the GUI of the "bestinformed Infoclient", a low-privileged user is by default able to change the server address of the "bestinformed Server" to which this client connects. This is dangerous as th… - CVE-2025-0425 2025-02-18 17:15 2025-02-18 Show GitHub Exploit DB Packet Storm
910 - - - In the "bestinformed Web" application, some user input was not properly sanitized. This leads to multiple authenticated stored cross-site scripting vulnerabilities. An authenticated attacker is able … - CVE-2025-0424 2025-02-18 17:15 2025-02-18 Show GitHub Exploit DB Packet Storm