Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187381 5.8 警告 PayPal - PayPal Payments Standard PHP ライブラリにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5790 2012-11-7 14:45 2012-11-4 Show GitHub Exploit DB Packet Storm
187382 5.8 警告 PayPal - PayPal Payments Standard PHP ライブラリにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5789 2012-11-7 14:44 2012-11-4 Show GitHub Exploit DB Packet Storm
187383 5.8 警告 PayPal - PayPal IPN ユーティリティにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5788 2012-11-7 14:30 2012-11-4 Show GitHub Exploit DB Packet Storm
187384 5.8 警告 PayPal - PayPal merchant SDK における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5787 2012-11-7 14:29 2012-11-4 Show GitHub Exploit DB Packet Storm
187385 5.8 警告 Apache Software Foundation - Apache CXF における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5786 2012-11-7 14:28 2012-11-4 Show GitHub Exploit DB Packet Storm
187386 5.8 警告 Apache Software Foundation - Apache Axis2/Java における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5785 2012-11-7 14:28 2012-11-4 Show GitHub Exploit DB Packet Storm
187387 5.8 警告 Amazon.com, Inc. - Amazon Flexible Payments Service PHP ライブラリにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5782 2012-11-7 14:25 2012-11-4 Show GitHub Exploit DB Packet Storm
187388 5.8 警告 Amazon.com, Inc. - Amazon Elastic Load Balancing API Tools における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5781 2012-11-7 14:24 2012-11-4 Show GitHub Exploit DB Packet Storm
187389 5.8 警告 Amazon.com, Inc. - Amazon merchant SDK における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5780 2012-11-7 14:22 2012-11-4 Show GitHub Exploit DB Packet Storm
187390 5.8 警告 Apache Software Foundation - Apache Libcloud における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-3446 2012-11-7 14:21 2012-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
621 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ERA404 ImageMeta allows Reflected XSS. This issue affects ImageMeta: from n/a through 1.1.2. CWE-79
Cross-site Scripting
CVE-2025-23845 2025-02-17 21:15 2025-02-17 Show GitHub Exploit DB Packet Storm
622 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webjema WP-NOTCAPTCHA allows Reflected XSS. This issue affects WP-NOTCAPTCHA: from n/a through 1.… CWE-79
Cross-site Scripting
CVE-2025-23840 2025-02-17 21:15 2025-02-17 Show GitHub Exploit DB Packet Storm
623 - - - In the Linux kernel, the following vulnerability has been resolved: vfio/platform: check the bounds of read/write syscalls count and offset are passed from user space and not checked, only offset i… - CVE-2025-21687 2025-02-17 21:15 2025-02-11 Show GitHub Exploit DB Packet Storm
624 - - - Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022.105.15542 are affected by an authenticated arbitrary file read vulnerability. - CVE-2025-0001 2025-02-17 19:15 2025-02-17 Show GitHub Exploit DB Packet Storm
625 3.3 LOW
Local
- - A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation lead… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-1378 2025-02-17 15:15 2025-02-17 Show GitHub Exploit DB Packet Storm
626 - - - Improper Validation of Integrity Check Value vulnerability in TXOne Networks StellarProtect (Legacy Mode), StellarEnforce, and Safe Lock allows an attacker to escalate their privileges in the victim’… - CVE-2024-47935 2025-02-17 15:15 2025-02-17 Show GitHub Exploit DB Packet Storm
627 8.8 HIGH
Network
- - Orca HCM from Learning Digital has a SQL Injection vulnerability, allowing attackers with regular privileges to inject arbitrary SQL commands to read, modify, and delete database contents. CWE-89
SQL Injection
CVE-2025-1389 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
628 3.3 LOW
Local
- - A vulnerability, which was classified as problematic, has been found in GNU elfutils 0.192. This issue affects the function gelf_getsymshndx of the file strip.c of the component eu-strip. The manipul… CWE-404
 Improper Resource Shutdown or Release
CVE-2025-1377 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
629 2.5 LOW
Local
- - A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipu… CWE-404
 Improper Resource Shutdown or Release
CVE-2025-1376 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm
630 7.2 HIGH
Network
- - The WP Activity Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘message’ parameter in all versions up to, and including, 5.2.2 due to insufficient input sanitization an… CWE-79
Cross-site Scripting
CVE-2025-0924 2025-02-17 14:15 2025-02-17 Show GitHub Exploit DB Packet Storm