Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189111 4.3 警告 IBM - IBM Rational AppScan Enterprise Edition におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3745 2012-09-25 17:38 2009-10-22 Show GitHub Exploit DB Packet Storm
189112 4.3 警告 Liferay - Liferay Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3742 2012-09-25 17:38 2009-11-18 Show GitHub Exploit DB Packet Storm
189113 4.3 警告 IBM - IBM Rational RequisitePro の ReqWeb Help 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3730 2012-09-25 17:38 2009-10-15 Show GitHub Exploit DB Packet Storm
189114 7.2 危険 Linux - Linux kernel の connector layer における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3725 2012-09-25 17:38 2009-10-2 Show GitHub Exploit DB Packet Storm
189115 9.3 危険 lucvil - LucVil PatPlayer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3717 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
189116 6.5 警告 maniacomputer - MCshoutbox の admin.php における任意のファイルを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3716 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
189117 6.8 警告 maniacomputer - MCshoutbox の scr_login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3715 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
189118 4.3 警告 maniacomputer - MCshoutbox の admin_login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3714 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
189119 7.5 危険 morcego - MorcegoCMS の fichero.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3713 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
189120 10 危険 JasPer Project - httpdx の http.cpp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3711 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 2, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
731 - - - Cross-Site Request Forgery (CSRF) vulnerability in WP Go Maps (formerly WP Google Maps) WP Go Maps. This issue affects WP Go Maps: from n/a through 9.0.40. CWE-352
 Origin Validation Error
CVE-2025-24742 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
732 - - - URL Redirection to Untrusted Site ('Open Redirect') vulnerability in KB Support KB Support. This issue affects KB Support: from n/a through 1.6.7. CWE-601
Open Redirect
CVE-2025-24741 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
733 - - - URL Redirection to Untrusted Site ('Open Redirect') vulnerability in ThimPress LearnPress. This issue affects LearnPress: from n/a through 4.2.7.1. CWE-601
Open Redirect
CVE-2025-24740 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
734 - - - Missing Authorization vulnerability in CodeSolz Better Find and Replace allows Privilege Escalation. This issue affects Better Find and Replace: from n/a through 1.6.7. CWE-862
 Missing Authorization
CVE-2025-24734 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
735 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms allo… CWE-79
Cross-site Scripting
CVE-2025-24708 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
736 - - - Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability in codection Import and export users and customers allows Retrieve Embedded Sensitive Data. This issue af… CWE-538
 File and Directory Information Exposure
CVE-2025-24689 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
737 - - - Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WpMultiStoreLocator WP Multi Store Locator allows Reflected XSS. This issue affects WP Multi Store Locat… CWE-80
Basic XSS
CVE-2025-24680 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
738 - - - Deserialization of Untrusted Data vulnerability in Pdfcrowd Save as PDF plugin by Pdfcrowd allows Object Injection. This issue affects Save as PDF plugin by Pdfcrowd: from n/a through 4.4.0. CWE-502
 Deserialization of Untrusted Data
CVE-2025-24671 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
739 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eniture Technology Small Package Quotes – Worldwide Express Edition allows SQL Injection. This is… CWE-89
SQL Injection
CVE-2025-24667 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm
740 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eniture Technology Small Package Quotes – Unishippers Edition allows SQL Injection. This issue af… CWE-89
SQL Injection
CVE-2025-24665 2025-01-28 00:15 2025-01-28 Show GitHub Exploit DB Packet Storm