Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
171 5.5 警告
Local
xpdfreader project xpdf Glyph & Cog, LLC の Xpdf における再帰制御に関する脆弱性 CWE-674
CWE-674
CVE-2024-4568 2025-01-30 11:14 2024-05-6 Show GitHub Exploit DB Packet Storm
172 5.4 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-4643 2025-01-30 11:14 2024-08-2 Show GitHub Exploit DB Packet Storm
173 4.4 警告
Local
デル NativeEdge Orchestrator デルの NativeEdge Orchestrator における誤った領域へのリソースの漏えいに関する脆弱性 CWE-378
CWE-668
CVE-2024-52543 2025-01-30 11:13 2024-12-25 Show GitHub Exploit DB Packet Storm
174 9.8 緊急
Network
OpenImageIO project OpenImageIO OpenImageIO project の OpenImageIO における脆弱性 CWE-476
CWE-Other
CVE-2024-55193 2025-01-30 11:13 2024-12-6 Show GitHub Exploit DB Packet Storm
175 9.8 緊急
Network
Projectworlds online food ordering system Projectworlds の online food ordering system における SQL インジェクションの脆弱性 CWE-89
CWE-89
CVE-2024-57328 2025-01-30 11:13 2025-01-23 Show GitHub Exploit DB Packet Storm
176 5.3 警告
Network
Linkz.ai Linkz.ai - Automatic link previews on hover Linkz.ai の WordPress 用 Linkz.ai - Automatic link previews on hover における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-9586 2025-01-30 11:13 2024-10-11 Show GitHub Exploit DB Packet Storm
177 4.3 警告
Network
WPMU DEV forminator forms WPMU DEV の WordPress 用 forminator forms におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-9351 2025-01-30 10:56 2024-10-17 Show GitHub Exploit DB Packet Storm
178 7.1 重要
Local
デル powerstoreos デルの powerstoreos における引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2024-51532 2025-01-30 10:55 2024-12-19 Show GitHub Exploit DB Packet Storm
179 5.4 警告
Network
Themeum tutor lms elementor addons Themeum の WordPress 用 tutor lms elementor addons におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-5576 2025-01-30 10:55 2024-08-20 Show GitHub Exploit DB Packet Storm
180 5.4 警告
Network
POSIMYTH The Plus Addons for Elementor Page Builder POSIMYTH の WordPress 用 The Plus Addons for Elementor Page Builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4484 2025-01-30 10:50 2024-05-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 9, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1021 - - - A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to storing credentials in the configuration file… - CVE-2025-0497 2025-01-31 03:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1022 - - - An encryption vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to a weak encryption methodology and could allow a… - CVE-2025-0477 2025-01-31 03:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1023 - - - Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding InstallScript custom action to a Basic MSI or InstallScript MSI project extracting fe… - CVE-2023-29080 2025-01-31 03:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1024 5.5 MEDIUM
Local
apple iphone_os
ipados
This issue was addressed with improved handling of symlinks. This issue is fixed in iPadOS 17.7.4, iOS 18.3 and iPadOS 18.3. Restoring a maliciously crafted backup file may lead to modification of pr… CWE-59
Link Following
CVE-2025-24104 2025-01-31 03:15 2025-01-28 Show GitHub Exploit DB Packet Storm
1025 8.8 HIGH
Network
apple watchos
ipados
macos
tvos
safari
visionos
iphone_os
The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.2, tvOS 18.2, Safari 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2. Processing maliciously … CWE-787
 Out-of-bounds Write
CVE-2024-54543 2025-01-31 03:13 2025-01-28 Show GitHub Exploit DB Packet Storm
1026 8.8 HIGH
Network
apple macos
ipados
iphone_os
safari
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command i… CWE-77
Command Injection
CVE-2025-24150 2025-01-31 03:10 2025-01-28 Show GitHub Exploit DB Packet Storm
1027 3.3 LOW
Local
apple macos
ipados
iphone_os
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.3, iOS 18.3 and iPadOS 18.3. An app may be able to view a contact's phone n… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2025-24145 2025-01-31 03:04 2025-01-28 Show GitHub Exploit DB Packet Storm
1028 7.5 HIGH
Network
jyothisjoy eventer The Eventer plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the 'eventer_get_attendees' function in all versions up to, and including, 3.9.8 due to insufficient escap… CWE-89
SQL Injection
CVE-2024-11135 2025-01-31 03:03 2025-01-28 Show GitHub Exploit DB Packet Storm
1029 6.5 MEDIUM
Network
apple macos
ipados
safari
visionos
The issue was addressed with improved access restrictions to the file system. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. A maliciously crafted web… NVD-CWE-noinfo
CVE-2025-24143 2025-01-31 03:03 2025-01-28 Show GitHub Exploit DB Packet Storm
1030 3.3 LOW
Local
apple ipados
iphone_os
An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.3 and iPadOS 18.3. An attacker with physical access to an unlocked device may be able to access Pho… NVD-CWE-noinfo
CVE-2025-24141 2025-01-31 03:03 2025-01-28 Show GitHub Exploit DB Packet Storm