Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Oct. 7, 2024, 10:02 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
161 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-46805 2024-10-3 10:09 2024-05-13 Show GitHub Exploit DB Packet Storm
162 9.8 緊急
Network
Artbees jupiter x core Artbees の WordPress 用 jupiter x core における重要な機能に対する認証の欠如に関する脆弱性 CWE-288
CWE-306
CVE-2024-7781 2024-10-3 10:09 2024-09-26 Show GitHub Exploit DB Packet Storm
163 4.3 警告
Network
WPPlugin LLC easy paypal events WPPlugin LLC の WordPress 用 easy paypal events におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-8476 2024-10-3 10:09 2024-09-25 Show GitHub Exploit DB Packet Storm
164 9.8 緊急
Network
minapper rest api to miniprogram jianbo の WordPress 用 rest api to miniprogram におけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2024-8485 2024-10-3 10:09 2024-09-25 Show GitHub Exploit DB Packet Storm
165 5.4 警告
Network
themesflat themesflat addons for elementor themesflat の WordPress 用 themesflat addons for elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-8515 2024-10-3 10:09 2024-09-25 Show GitHub Exploit DB Packet Storm
166 8.1 重要
Network
Acquia Inc. Mautic Acquia Inc. の Mautic におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CVE-2021-27916 2024-10-3 10:02 2021-03-2 Show GitHub Exploit DB Packet Storm
167 6.1 警告
Network
itpathsolutions contact form to any api itpathsolutions の WordPress 用 contact form to any api におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-7617 2024-10-3 10:02 2024-09-25 Show GitHub Exploit DB Packet Storm
168 7.5 重要
Network
Rockwell Automation 5015-u8ihft ファームウェア Rockwell Automation の 5015-u8ihft ファームウェアにおける脆弱性 CWE-20
CWE-noinfo
CVE-2024-45825 2024-10-3 10:02 2024-09-12 Show GitHub Exploit DB Packet Storm
169 8.8 重要
Network
ferrislucas promptr ferrislucas の promptr におけるコードインジェクションの脆弱性 CWE-94
CWE-94
CVE-2024-46489 2024-10-3 10:01 2024-09-25 Show GitHub Exploit DB Packet Storm
170 6.5 警告
Network
シスコシステムズ Cisco IOS
Cisco IOS XE
シスコシステムズの Cisco IOS XE および Cisco IOS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-285
CWE-352
CVE-2024-20414 2024-10-3 10:01 2024-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Oct. 7, 2024, 5:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1 - - - A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. This vulnerability affects the function formSetWanPPPoE of the file /goform/formSetWanPPPoE. The manipulatio… New CWE-120
Classic Buffer Overflow
CVE-2024-9557 2024-10-7 02:15 2024-10-7 Show GitHub Exploit DB Packet Storm
2 - - - A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetEnableWizard of the file /goform/formSetEnableWizard. The manipulation o… New - CVE-2024-9556 2024-10-7 01:15 2024-10-7 Show GitHub Exploit DB Packet Storm
3 - - - A vulnerability, which was classified as critical, has been found in D-Link DIR-605L 2.13B01 BETA. Affected by this issue is the function formSetEasy_Wizard of the file /goform/formSetEasy_Wizard. Th… New CWE-120
Classic Buffer Overflow
CVE-2024-9555 2024-10-7 00:15 2024-10-7 Show GitHub Exploit DB Packet Storm
4 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Axton WP-WebAuthn allows Stored XSS.This issue affects WP-WebAuthn: from n/a through 1.3.1. New CWE-79
Cross-site Scripting
CVE-2024-47650 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
5 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YITH YITH WooCommerce Ajax Search allows SQL Injection.This issue affects YITH WooCommerce Ajax S… New CWE-89
SQL Injection
CVE-2024-47350 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
6 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExpertsio WPExperts Square For GiveWP allows SQL Injection.This issue affects WPExperts Square … New - CVE-2024-47338 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
7 - - - Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') New CWE-78
OS Command 
CVE-2024-45252 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
8 - - - Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') New - CVE-2024-45251 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
9 - - - ZKteco – CWE 200 Exposure of Sensitive Information to an Unauthorized Actor New CWE-200
Information Exposure
CVE-2024-45250 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm
10 - - - Cavok – CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') New CWE-89
SQL Injection
CVE-2024-45249 2024-10-6 22:15 2024-10-6 Show GitHub Exploit DB Packet Storm