Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1641 8 重要
Adjacent
マイクロソフト Microsoft Windows 10
Microsoft Windows Server 2016
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-28925 2025-01-17 10:18 2024-04-9 Show GitHub Exploit DB Packet Storm
1642 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-191
CWE-noinfo
CVE-2024-28930 2025-01-17 09:53 2024-04-9 Show GitHub Exploit DB Packet Storm
1643 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28935 2025-01-17 09:48 2024-04-9 Show GitHub Exploit DB Packet Storm
1644 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-453
CVE-2024-49120 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1645 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-191
CWE-noinfo
CVE-2024-28933 2025-01-17 09:47 2024-04-9 Show GitHub Exploit DB Packet Storm
1646 8.8 重要
Local
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Windows Hyper-V のリモートでコードが実行される脆弱性 CWE-393
CWE-noinfo
CVE-2024-49117 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1647 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28932 2025-01-17 09:47 2024-04-9 Show GitHub Exploit DB Packet Storm
1648 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server&…
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-591
CVE-2024-49123 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1649 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-53206 2025-01-17 09:44 2024-11-28 Show GitHub Exploit DB Packet Storm
1650 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-56602 2025-01-17 09:44 2024-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
341 7.8 HIGH
Local
- - Substance3D - Designer versions 14.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … New CWE-787
 Out-of-bounds Write
CVE-2025-21161 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
342 7.8 HIGH
Local
- - Illustrator versions 29.1, 28.7.3 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user.… New CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2025-21160 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
343 7.8 HIGH
Local
- - Illustrator versions 29.1, 28.7.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this iss… New CWE-416
 Use After Free
CVE-2025-21159 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
344 7.8 HIGH
Local
- - InCopy versions 20.0, 19.5.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Expl… New CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2025-21156 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
345 5.5 MEDIUM
Local
- - Substance3D - Stager versions 3.1.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerab… New CWE-476
 NULL Pointer Dereference
CVE-2025-21155 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
346 - - - An exploitable CSRF vulnerability exists in Atlassian Jira, from versions 7.6.4 to 8.1.0. The login form doesn’t require a CSRF token. As a result, an attacker can log a user into the system under an… New - CVE-2019-15002 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
347 5.4 MEDIUM
Network
scriptsbundle dwt_listing The DWT - Directory & Listing WordPress Theme is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.3.4 due to insufficient input sanitization and output esc… Update CWE-79
Cross-site Scripting
CVE-2025-0169 2025-02-12 03:15 2025-02-9 Show GitHub Exploit DB Packet Storm
348 7.5 HIGH
Network
superstorefinder super_store_finder The Super Store Finder plugin for WordPress is vulnerable to SQL Injection via the ‘ssf_wp_user_name’ parameter in all versions up to, and including, 7.0 due to insufficient escaping on the user supp… Update CWE-89
SQL Injection
CVE-2024-13440 2025-02-12 03:02 2025-02-9 Show GitHub Exploit DB Packet Storm
349 7.8 HIGH
Local
openatom openharmony in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow. Update CWE-120
Classic Buffer Overflow
CVE-2025-0303 2025-02-12 02:25 2025-02-7 Show GitHub Exploit DB Packet Storm
350 5.5 MEDIUM
Local
openatom openharmony in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through integer overflow. Update CWE-190
 Integer Overflow or Wraparound
CVE-2025-0302 2025-02-12 02:25 2025-02-7 Show GitHub Exploit DB Packet Storm