Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189041 7.5 危険 jabba laci - PHP Traverser における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4085 2012-09-25 17:38 2009-11-29 Show GitHub Exploit DB Packet Storm
189042 7.5 危険 lanifex - OPT の forums/Forum_Include/index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4082 2012-09-25 17:38 2009-11-29 Show GitHub Exploit DB Packet Storm
189043 6.8 警告 oftc
ircd-ratbox
IRCD-Hybrid
- RCD-hybrid などの clean_string 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2009-4016 2012-09-25 17:38 2010-02-4 Show GitHub Exploit DB Packet Storm
189044 10 危険 linux.thai - LibThai における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-4012 2012-09-25 17:38 2010-01-19 Show GitHub Exploit DB Packet Storm
189045 10 危険 ヒューレット・パッカード - HP Power Manager の goform/formExportDataLogs におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4000 2012-09-25 17:38 2010-01-19 Show GitHub Exploit DB Packet Storm
189046 10 危険 ヒューレット・パッカード - HP Power Manager におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3999 2012-09-25 17:38 2010-01-19 Show GitHub Exploit DB Packet Storm
189047 5 警告 マイクロソフト - Microsoft Internet Explorer 8 の印刷機能におけるローカルパス名を発見される名脆弱性 CWE-200
情報漏えい
CVE-2009-4073 2012-09-25 17:38 2009-11-24 Show GitHub Exploit DB Packet Storm
189048 4.3 警告 jeff miccolis - Drupal 用の Strongarm モジュールの設定ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4065 2012-09-25 17:38 2009-11-18 Show GitHub Exploit DB Packet Storm
189049 7.5 危険 inertialfate - Joomla! の inertialFATE if_nexus コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4057 2012-09-25 17:38 2009-11-23 Show GitHub Exploit DB Packet Storm
189050 4.3 警告 IBM - IBM Rational Application Developer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4052 2012-09-25 17:38 2009-11-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 14, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1711 5.4 MEDIUM
Network
pluginus meta_data_and_taxonomies_filter The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mdf_results_by_ajax' shortcode in all versions up to, and including, 1.3… CWE-79
Cross-site Scripting
CVE-2024-13340 2025-02-1 01:02 2025-01-23 Show GitHub Exploit DB Packet Storm
1712 5.4 MEDIUM
Network
cliptakes cliptakes The Cliptakes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cliptakes_input_email' shortcode in all versions up to, and including, 1.3.4 due to insufficient inpu… CWE-79
Cross-site Scripting
CVE-2024-13389 2025-02-1 00:59 2025-01-23 Show GitHub Exploit DB Packet Storm
1713 7.5 HIGH
Network
- - IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when sending an LDAP extended operation. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2024-45650 2025-02-1 00:15 2025-02-1 Show GitHub Exploit DB Packet Storm
1714 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. CWE-426
 Untrusted Search Path
CVE-2025-24827 2025-02-1 00:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1715 5.5 MEDIUM
Local
apple macos A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to modify protected parts of t… NVD-CWE-noinfo
CVE-2025-24114 2025-01-31 23:51 2025-01-28 Show GitHub Exploit DB Packet Storm
1716 4.4 MEDIUM
Local
apple macos An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to bypass Privacy preferen… NVD-CWE-noinfo
CVE-2025-24116 2025-01-31 23:44 2025-01-28 Show GitHub Exploit DB Packet Storm
1717 5.5 MEDIUM
Local
apple iphone_os
visionos
macos
tvos
ipados
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Ventura 13.7.3, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, tvOS 18.3. P… NVD-CWE-noinfo
CVE-2025-24127 2025-01-31 23:42 2025-01-28 Show GitHub Exploit DB Packet Storm
1718 7.5 HIGH
Network
apple macos This issue was addressed by improved management of object lifetimes. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An attacker may be able to cause unexpected … NVD-CWE-noinfo
CVE-2025-24120 2025-01-31 23:42 2025-01-28 Show GitHub Exploit DB Packet Storm
1719 4.3 MEDIUM
Network
apple macos
ipados
iphone_os
safari
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Visiting a malicious website may lead to address bar spoofing. NVD-CWE-noinfo
CVE-2025-24128 2025-01-31 23:41 2025-01-28 Show GitHub Exploit DB Packet Storm
1720 7.5 HIGH
Network
apple macos
ipados
iphone_os
visionos
watchos
tvos
A type confusion issue was addressed with improved checks. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an u… CWE-843
Type Confusion
CVE-2025-24129 2025-01-31 23:40 2025-01-28 Show GitHub Exploit DB Packet Storm