Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1721 6.5 警告
Network
ThimPress LearnPress ThimPress の WordPress 用 LearnPress における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-4444 2025-01-16 16:42 2024-05-14 Show GitHub Exploit DB Packet Storm
1722 5.4 警告
Network
WPDeveloper Essential Addons for Elementor WPDeveloper の WordPress 用 Essential Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5073 2025-01-16 16:42 2024-05-30 Show GitHub Exploit DB Packet Storm
1723 7.8 重要
Local
クアルコム QCA6696 ファームウェア
QCA6584AU ファームウェア
QCA6391 ファームウェア
qamsrv1h ファームウェア
fastconnect 7800 ファームウェア
fastconnect 6800 ファームウェア
fastconnect 6900&nb…
複数のクアルコム製品における古典的バッファオーバーフローの脆弱性 CWE-120
CWE-120
CVE-2023-43524 2025-01-16 16:42 2023-09-19 Show GitHub Exploit DB Packet Storm
1724 5.4 警告
Network
Jegtheme Jeg Elementor Kit Jegtheme の WordPress 用 Jeg Elementor Kit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0334 2025-01-16 16:42 2024-05-1 Show GitHub Exploit DB Packet Storm
1725 5.4 警告
Network
Livemesh Livemesh Addons for Elementor Livemesh の WordPress 用 Livemesh Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1235 2025-01-16 16:42 2024-02-29 Show GitHub Exploit DB Packet Storm
1726 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability CWE-122
CWE-noinfo
CVE-2025-21333 2025-01-16 16:28 2025-01-14 Show GitHub Exploit DB Packet Storm
1727 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft OLE DB Driver
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28926 2025-01-16 16:19 2024-04-9 Show GitHub Exploit DB Packet Storm
1728 6.8 警告
Physics
Huawei Myna ファームウェア Huawei の Myna ファームウェアにおけるデータの整合性検証不備に関する脆弱性 CWE-354
CWE-354
CVE-2020-9210 2025-01-16 16:11 2020-02-18 Show GitHub Exploit DB Packet Storm
1729 7.8 重要
Local
Huawei FusionCompute ファームウェア Huawei の FusionCompute ファームウェアにおける脆弱性 CWE-269
CWE-noinfo
CVE-2020-9222 2025-01-16 16:11 2020-02-18 Show GitHub Exploit DB Packet Storm
1730 6.5 警告
Network
Huawei Lion-AL00C ファームウェア Huawei の Lion-AL00C ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2020-9253 2025-01-16 16:11 2020-02-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
791 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Erez Hadas-Sonnenschein Smartarget allows Stored XSS. This issue affects Smartarget: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-22650 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
792 - - - Improper Restriction of Excessive Authentication Attempts vulnerability in Rameez Iqbal Real Estate Manager allows Password Brute Forcing. This issue affects Real Estate Manager: from n/a through 7.3. CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2025-22645 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
793 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NotFound Distance Rate Shipping for WooCommerce allows Blind SQL Injection. This issue affects Di… CWE-89
SQL Injection
CVE-2025-22639 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
794 6.4 MEDIUM
Local
- - A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks … CWE-416
 Use After Free
CVE-2025-0622 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
795 4.4 MEDIUM
Local
- - A flaw was found in grub2. When failing to mount an HFS+ grub, the hfsplus filesystem driver doesn't properly set an ERRNO value. This issue may lead to a NULL pointer access. CWE-911
 Improper Update of Reference Count
CVE-2024-45783 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
796 6.7 MEDIUM
Local
- - When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer overflow when allocating its internal buffer. A crafted .mo file may lead the buffer size calculation to ove… CWE-787
 Out-of-bounds Write
CVE-2024-45776 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
797 5.2 MEDIUM
Local
- - A flaw was found in grub2 where the grub_extcmd_dispatcher() function calls grub_arg_list_alloc() to allocate memory for the grub's argument list. However, it fails to check in case the memory alloca… CWE-252
 Unchecked Return Value
CVE-2024-45775 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
798 - - - Insecure Permissions in Atos Eviden IDRA and IDCA before 2.7.0. A highly trusted role (Config Admin) could exceed their configuration privileges in a multi-partition environment and access some confi… - CVE-2024-39328 2025-02-19 05:15 2025-02-19 Show GitHub Exploit DB Packet Storm
799 6.3 MEDIUM
Network
- - A vulnerability was found in code-projects Real Estate Property Management System 1.0. It has been classified as critical. This affects an unknown part of the file /ajax_city.php. The manipulation of… - CVE-2025-1381 2025-02-19 05:15 2025-02-17 Show GitHub Exploit DB Packet Storm
800 6.3 MEDIUM
Network
- - A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /dashboard/admin/del_plan.php. The manipul… - CVE-2025-1380 2025-02-19 05:15 2025-02-17 Show GitHub Exploit DB Packet Storm