Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187141 7.5 危険 Pico - PicoPublisher における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5912 2012-11-20 14:55 2012-11-17 Show GitHub Exploit DB Packet Storm
187142 4.3 警告 b2evolution - b2evolution の blogs/blog1.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5911 2012-11-20 14:55 2012-11-17 Show GitHub Exploit DB Packet Storm
187143 6.5 警告 b2evolution - b2evolution の blogs/htsrv/viewfile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5910 2012-11-20 14:53 2012-11-17 Show GitHub Exploit DB Packet Storm
187144 7.5 危険 MyBB Group - MyBB の admin/modules/user/users.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5909 2012-11-20 14:53 2012-11-17 Show GitHub Exploit DB Packet Storm
187145 4.3 警告 MyBB Group - MyBB の admin/modules/user/users.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5908 2012-11-20 14:52 2012-11-17 Show GitHub Exploit DB Packet Storm
187146 5 警告 TomatoCart - TomatoCart の json.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5907 2012-11-20 14:41 2012-11-17 Show GitHub Exploit DB Packet Storm
187147 4.3 警告 More Quick Tools - GreenBrowser におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5906 2012-11-20 14:24 2012-11-17 Show GitHub Exploit DB Packet Storm
187148 4 警告 Elif Keir - KnFTPd におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5905 2012-11-20 14:08 2012-11-17 Show GitHub Exploit DB Packet Storm
187149 6.8 警告 Irfan Skiljan - IrfanView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5904 2012-11-20 13:56 2012-03-28 Show GitHub Exploit DB Packet Storm
187150 4.3 警告 Simple Machines - Simple Machines Forum におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5903 2012-11-20 13:54 2012-11-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
441 8.8 HIGH
Network
- - A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the function set_ws_action of the file /dws/api/. The manipulation leads to heap-based buff… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2025-1538 2025-02-22 00:15 2025-02-22 Show GitHub Exploit DB Packet Storm
442 6.3 MEDIUM
Network
- - A vulnerability was found in Harpia DiagSystem 12. It has been rated as critical. This issue affects some unknown processing of the file /diagsystem/PACS/atualatendimento_jpeg.php. The manipulation o… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1537 2025-02-22 00:15 2025-02-22 Show GitHub Exploit DB Packet Storm
443 7.3 HIGH
Network
- - A vulnerability was found in Raisecom Multi-Service Intelligent Gateway up to 20250208. It has been declared as critical. This vulnerability affects unknown code of the file /vpn/vpn_template_style.p… CWE-78
CWE-77
OS Command 
Command Injection
CVE-2025-1536 2025-02-22 00:15 2025-02-22 Show GitHub Exploit DB Packet Storm
444 - - - There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size arg… - CVE-2025-0838 2025-02-22 00:15 2025-02-22 Show GitHub Exploit DB Packet Storm
445 - - - Cross Site Scripting vulnerabilities in Xunruicms v.4.6.3 and before allows a remote attacker to escalate privileges via a crafted script. - CVE-2025-25957 2025-02-22 00:15 2025-02-21 Show GitHub Exploit DB Packet Storm
446 - - - A memory leak has been identified in the parseSWF_IMPORTASSETS2 function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file. - CVE-2025-26307 2025-02-22 00:15 2025-02-21 Show GitHub Exploit DB Packet Storm
447 5.4 MEDIUM
Network
undsgn uncode The Uncode theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘mle-description’ parameter in all versions up to, and including, 2.9.1.6 due to insufficient input sanitization an… CWE-79
Cross-site Scripting
CVE-2024-13667 2025-02-21 23:23 2025-02-18 Show GitHub Exploit DB Packet Storm
448 6.5 MEDIUM
Network
undsgn uncode The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input validation in the 'uncode_recordMedia' function in all versions up to, and including, 2.9.1.6. This makes… NVD-CWE-noinfo
CVE-2024-13691 2025-02-21 23:22 2025-02-18 Show GitHub Exploit DB Packet Storm
449 7.5 HIGH
Network
undsgn uncode The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input validation in the 'uncode_admin_get_oembed' function in all versions up to, and including, 2.9.1.6. This … NVD-CWE-noinfo
CVE-2024-13681 2025-02-21 23:22 2025-02-18 Show GitHub Exploit DB Packet Storm
450 - - - Opera Mini for Android before version 52.2 is vulnerable to an address bar spoofing attack. The vulnerability allows a malicious page to trick the browser into showing an address of a different page.… - CVE-2020-6158 2025-02-21 23:15 2025-02-21 Show GitHub Exploit DB Packet Storm