Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187171 7.6 危険 Mozilla Foundation - Mozilla Firefox の developer-tools サブシステムにおける任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3973 2012-11-19 18:05 2012-08-28 Show GitHub Exploit DB Packet Storm
187172 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-1949 2012-11-19 18:04 2012-07-17 Show GitHub Exploit DB Packet Storm
187173 10 危険 Mozilla Foundation - 複数の Mozilla 製品で使用される Graphite 2 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-3971 2012-11-19 17:30 2012-08-28 Show GitHub Exploit DB Packet Storm
187174 9.3 危険 Mozilla Foundation - Mozilla Firefox におけるクローム特権で任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3965 2012-11-19 17:29 2012-08-28 Show GitHub Exploit DB Packet Storm
187175 3.5 注意 Vanilla Forums - Vanilla Forums にアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4954 2012-11-19 17:00 2012-11-13 Show GitHub Exploit DB Packet Storm
187176 5 警告 Mozilla Foundation - Bugzilla における任意のユーザの保存済み検索に関する重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5884 2012-11-19 15:12 2012-11-16 Show GitHub Exploit DB Packet Storm
187177 4.3 警告 Mozilla Foundation
Yahoo!
- Bugzilla で使用される YUI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5883 2012-11-19 15:08 2012-11-16 Show GitHub Exploit DB Packet Storm
187178 4.3 警告 Yahoo! - YUI の Flash インフラストラクチャコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5882 2012-11-19 15:08 2012-11-16 Show GitHub Exploit DB Packet Storm
187179 4.3 警告 Yahoo! - YUI の Flash インフラストラクチャコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5881 2012-11-19 15:06 2011-11-16 Show GitHub Exploit DB Packet Storm
187180 4.3 警告 Mozilla Foundation - Bugzilla の template/en/default/bug/field-events.js.tmpl における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4199 2012-11-19 14:53 2012-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
341 7.8 HIGH
Local
- - Substance3D - Designer versions 14.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … New CWE-787
 Out-of-bounds Write
CVE-2025-21161 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
342 7.8 HIGH
Local
- - Illustrator versions 29.1, 28.7.3 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user.… New CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2025-21160 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
343 7.8 HIGH
Local
- - Illustrator versions 29.1, 28.7.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this iss… New CWE-416
 Use After Free
CVE-2025-21159 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
344 7.8 HIGH
Local
- - InCopy versions 20.0, 19.5.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Expl… New CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2025-21156 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
345 5.5 MEDIUM
Local
- - Substance3D - Stager versions 3.1.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerab… New CWE-476
 NULL Pointer Dereference
CVE-2025-21155 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
346 - - - An exploitable CSRF vulnerability exists in Atlassian Jira, from versions 7.6.4 to 8.1.0. The login form doesn’t require a CSRF token. As a result, an attacker can log a user into the system under an… New - CVE-2019-15002 2025-02-12 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
347 5.4 MEDIUM
Network
scriptsbundle dwt_listing The DWT - Directory & Listing WordPress Theme is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.3.4 due to insufficient input sanitization and output esc… Update CWE-79
Cross-site Scripting
CVE-2025-0169 2025-02-12 03:15 2025-02-9 Show GitHub Exploit DB Packet Storm
348 7.5 HIGH
Network
superstorefinder super_store_finder The Super Store Finder plugin for WordPress is vulnerable to SQL Injection via the ‘ssf_wp_user_name’ parameter in all versions up to, and including, 7.0 due to insufficient escaping on the user supp… Update CWE-89
SQL Injection
CVE-2024-13440 2025-02-12 03:02 2025-02-9 Show GitHub Exploit DB Packet Storm
349 7.8 HIGH
Local
openatom openharmony in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow. Update CWE-120
Classic Buffer Overflow
CVE-2025-0303 2025-02-12 02:25 2025-02-7 Show GitHub Exploit DB Packet Storm
350 5.5 MEDIUM
Local
openatom openharmony in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through integer overflow. Update CWE-190
 Integer Overflow or Wraparound
CVE-2025-0302 2025-02-12 02:25 2025-02-7 Show GitHub Exploit DB Packet Storm