Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1641 8 重要
Adjacent
マイクロソフト Microsoft Windows 10
Microsoft Windows Server 2016
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-28925 2025-01-17 10:18 2024-04-9 Show GitHub Exploit DB Packet Storm
1642 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-191
CWE-noinfo
CVE-2024-28930 2025-01-17 09:53 2024-04-9 Show GitHub Exploit DB Packet Storm
1643 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28935 2025-01-17 09:48 2024-04-9 Show GitHub Exploit DB Packet Storm
1644 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-453
CVE-2024-49120 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1645 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-191
CWE-noinfo
CVE-2024-28933 2025-01-17 09:47 2024-04-9 Show GitHub Exploit DB Packet Storm
1646 8.8 重要
Local
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Windows Hyper-V のリモートでコードが実行される脆弱性 CWE-393
CWE-noinfo
CVE-2024-49117 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1647 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft Visual Studio
Microsoft ODBC Driver
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28932 2025-01-17 09:47 2024-04-9 Show GitHub Exploit DB Packet Storm
1648 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server&…
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-591
CVE-2024-49123 2025-01-17 09:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1649 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-53206 2025-01-17 09:44 2024-11-28 Show GitHub Exploit DB Packet Storm
1650 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-56602 2025-01-17 09:44 2024-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
811 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webjema WP-NOTCAPTCHA allows Reflected XSS. This issue affects WP-NOTCAPTCHA: from n/a through 1.… CWE-79
Cross-site Scripting
CVE-2025-23840 2025-02-17 21:15 2025-02-17 Show GitHub Exploit DB Packet Storm
812 - - - In the Linux kernel, the following vulnerability has been resolved: vfio/platform: check the bounds of read/write syscalls count and offset are passed from user space and not checked, only offset i… - CVE-2025-21687 2025-02-17 21:15 2025-02-11 Show GitHub Exploit DB Packet Storm
813 - - - Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022.105.15542 are affected by an authenticated arbitrary file read vulnerability. - CVE-2025-0001 2025-02-17 19:15 2025-02-17 Show GitHub Exploit DB Packet Storm
814 3.3 LOW
Local
- - A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation lead… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-1378 2025-02-17 15:15 2025-02-17 Show GitHub Exploit DB Packet Storm
815 - - - Improper Validation of Integrity Check Value vulnerability in TXOne Networks StellarProtect (Legacy Mode), StellarEnforce, and Safe Lock allows an attacker to escalate their privileges in the victim’… - CVE-2024-47935 2025-02-17 15:15 2025-02-17 Show GitHub Exploit DB Packet Storm
816 8.8 HIGH
Network
- - Orca HCM from Learning Digital has a SQL Injection vulnerability, allowing attackers with regular privileges to inject arbitrary SQL commands to read, modify, and delete database contents. CWE-89
SQL Injection
CVE-2025-1389 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
817 3.3 LOW
Local
- - A vulnerability, which was classified as problematic, has been found in GNU elfutils 0.192. This issue affects the function gelf_getsymshndx of the file strip.c of the component eu-strip. The manipul… CWE-404
 Improper Resource Shutdown or Release
CVE-2025-1377 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
818 2.5 LOW
Local
- - A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipu… CWE-404
 Improper Resource Shutdown or Release
CVE-2025-1376 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
819 7.2 HIGH
Network
- - The WP Activity Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘message’ parameter in all versions up to, and including, 5.2.2 due to insufficient input sanitization an… CWE-79
Cross-site Scripting
CVE-2025-0924 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
820 8.8 HIGH
Network
- - Orca HCM from LEARNING DIGITAL has an Arbitrary File Upload vulnerability, allowing remote attackers with regular privileges to upload and run web shells CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2025-1388 2025-02-17 13:15 2025-02-17 Show GitHub Exploit DB Packet Storm