Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
186951 5 警告 Apache Software Foundation - Apache Tomcat におけるサービス運用妨害 (デーモンの停止) の脆弱性 CWE-16
環境設定
CVE-2012-5568 2012-12-4 14:11 2012-11-30 Show GitHub Exploit DB Packet Storm
186952 5 警告 Apache Software Foundation - Apache HTTP Server の mod_proxy_ajp モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-4557 2012-12-4 14:10 2012-01-31 Show GitHub Exploit DB Packet Storm
186953 7.8 危険 IBM - IBM WebSphere DataPower XC10 アプライアンスにおけるサービス運用妨害 (プロセス終了) の脆弱性 CWE-287
不適切な認証
CVE-2012-5758 2012-12-3 18:56 2012-10-29 Show GitHub Exploit DB Packet Storm
186954 5.8 警告 cups-pk-helper - cups-pk-helper における重要なファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4510 2012-12-3 18:54 2012-11-20 Show GitHub Exploit DB Packet Storm
186955 9.3 危険 Novell - Windows 上で稼働する Novell GroupWise のクライアントにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-0418 2012-12-3 18:53 2012-09-11 Show GitHub Exploit DB Packet Storm
186956 4.3 警告 アップル - Apple Safari 6.0 未満で使用される WebKit における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3694 2012-12-3 18:52 2012-07-25 Show GitHub Exploit DB Packet Storm
186957 6.8 警告 PostgreSQL.org - PostgreSQL の pg_dump における CRLF インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0868 2012-12-3 18:51 2012-02-27 Show GitHub Exploit DB Packet Storm
186958 6.8 警告 Lattice Semiconductor - Lattice Diamond Programmer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2614 2012-12-3 18:50 2012-07-12 Show GitHub Exploit DB Packet Storm
186959 4.3 警告 The Document Foundation
OpenOffice.org Project
Redland
- OpenOffice およびその他の製品で使用される Redland Raptor における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-0037 2012-12-3 18:48 2012-06-17 Show GitHub Exploit DB Packet Storm
186960 5 警告 Google - Android 用 QuIC Graphics KGSL カーネルモードドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-4222 2012-12-3 15:22 2012-11-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 6.1 MEDIUM
Network
ncrafts formcraft The FormCraft plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.9.11 due to insufficient input sanitization and output esc… Update CWE-79
Cross-site Scripting
CVE-2025-0817 2025-02-21 21:15 2025-02-18 Show GitHub Exploit DB Packet Storm
182 - - - Improper neutralization of quoting syntax in PostgreSQL libpq functions PQescapeLiteral(), PQescapeIdentifier(), PQescapeString(), and PQescapeStringConn() allows a database input provider to achieve… Update - CVE-2025-1094 2025-02-21 20:15 2025-02-13 Show GitHub Exploit DB Packet Storm
183 - - - In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format string and arguments are larger than the buffer s… New - CVE-2025-1471 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
184 - - - In Eclipse OMR, from the initial contribution to version 0.4.0, some OMR internal port library and utilities consumers of z/OS atoe functions do not check their return values for NULL memory pointers… New - CVE-2025-1470 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
185 6.4 MEDIUM
Network
- - The Maps for WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'MapOnePoint' shortcode in all versions up to, and including, 1.2.4 due to insufficient input saniti… New CWE-79
Cross-site Scripting
CVE-2024-13648 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
186 6.4 MEDIUM
Network
- - The Autoship Cloud for WooCommerce Subscription Products plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'autoship-create-scheduled-order-action' shortcode in all v… New CWE-79
Cross-site Scripting
CVE-2024-13461 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
187 8.8 HIGH
Network
- - The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.4 via s… New CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2024-13353 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
188 6.4 MEDIUM
Network
- - The Ziggeo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ziggeo_event' shortcode in all versions up to, and including, 3.1 due to insufficient input sanitization… New CWE-79
Cross-site Scripting
CVE-2024-12452 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
189 5.3 MEDIUM
Network
- - The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to second-order SQL Injection via filenames in al… New CWE-89
SQL Injection
CVE-2024-12276 2025-02-21 19:15 2025-02-21 Show GitHub Exploit DB Packet Storm
190 6.4 MEDIUM
Network
- - The Events Calendar Made Simple – Pie Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's piecal shortcode in all versions up to, and including, 1.2.5 due to i… New CWE-79
Cross-site Scripting
CVE-2025-1410 2025-02-21 18:15 2025-02-21 Show GitHub Exploit DB Packet Storm