Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 2:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191231 4.3 警告 Mambo Foundation
Joomla!
- Mambo 用の AkoBook におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4745 2012-09-25 16:59 2007-09-6 Show GitHub Exploit DB Packet Storm
191232 9.3 危険 next generation software - Next Generation Software VDJ におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4735 2012-09-25 16:59 2007-09-6 Show GitHub Exploit DB Packet Storm
191233 4.3 警告 otslabs - Ots Labs OTSTurntables におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4734 2012-09-25 16:59 2007-09-6 Show GitHub Exploit DB Packet Storm
191234 6.8 警告 LIGHTTPD - lighttpd の mod_fastcgi 拡張におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4727 2012-09-25 16:59 2007-09-12 Show GitHub Exploit DB Packet Storm
191235 6.8 警告 move networks inc - Move Media Player の qsp2ie07051001.dll におけるスタックベースのバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4722 2012-09-25 16:59 2007-09-5 Show GitHub Exploit DB Packet Storm
191236 7.5 危険 phd - PHD Help Desk における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4716 2012-09-25 16:59 2007-09-5 Show GitHub Exploit DB Packet Storm
191237 7.2 危険 MicroWorld Technologies Inc. - MicroWorld eScan Virus Control などにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-4649 2012-09-25 16:59 2007-08-31 Show GitHub Exploit DB Packet Storm
191238 7.2 危険 Norman - NVC の nvcoaft51 ドライバにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2007-4648 2012-09-25 16:59 2007-08-31 Show GitHub Exploit DB Packet Storm
191239 10 危険 hexamail - Hexamail Server の pop3 サービスにおけるバッファオーバーフローの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4646 2012-09-25 16:59 2007-08-31 Show GitHub Exploit DB Packet Storm
191240 6.4 警告 nmdeluxe - NMDeluxe の index.php における SQL インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4645 2012-09-25 16:59 2007-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 23, 2025, 5:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
901 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Predrag Supurovic Stop Comment Spam allows Stored XSS.This issue affects Stop Comment Spam: from … CWE-79
Cross-site Scripting
CVE-2025-23826 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
902 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alex Thorpe Easy Shortcode Buttons allows Stored XSS.This issue affects Easy Shortcode Buttons: f… CWE-79
Cross-site Scripting
CVE-2025-23825 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
903 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alexander Weleczka FontAwesome.io ShortCodes allows Stored XSS.This issue affects FontAwesome.io … CWE-79
Cross-site Scripting
CVE-2025-23824 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
904 - - - Cross-Site Request Forgery (CSRF) vulnerability in jprintf CNZZ&51LA for WordPress allows Cross Site Request Forgery.This issue affects CNZZ&51LA for WordPress: from n/a through 1.0.1. CWE-352
 Origin Validation Error
CVE-2025-23823 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
905 - - - Cross-Site Request Forgery (CSRF) vulnerability in Cornea Alexandru Category Custom Fields allows Cross Site Request Forgery.This issue affects Category Custom Fields: from n/a through 1.0. CWE-352
 Origin Validation Error
CVE-2025-23822 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
906 - - - Cross-Site Request Forgery (CSRF) vulnerability in Aleapp WP Cookies Alert allows Cross Site Request Forgery.This issue affects WP Cookies Alert: from n/a through 1.1.1. CWE-352
 Origin Validation Error
CVE-2025-23821 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
907 - - - Cross-Site Request Forgery (CSRF) vulnerability in Laxman Thapa Content Security Policy Pro allows Cross Site Request Forgery.This issue affects Content Security Policy Pro: from n/a through 1.3.5. CWE-352
 Origin Validation Error
CVE-2025-23820 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
908 - - - Cross-Site Request Forgery (CSRF) vulnerability in Peggy Kuo More Link Modifier allows Stored XSS.This issue affects More Link Modifier: from n/a through 1.0.3. CWE-352
 Origin Validation Error
CVE-2025-23818 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
909 - - - Cross-Site Request Forgery (CSRF) vulnerability in Mahadir Ahmad MHR-Custom-Anti-Copy allows Stored XSS.This issue affects MHR-Custom-Anti-Copy: from n/a through 2.0. CWE-352
 Origin Validation Error
CVE-2025-23817 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
910 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in metaphorcreations Metaphor Widgets allows Stored XSS. This issue affects Metaphor Widgets: from n… CWE-79
Cross-site Scripting
CVE-2025-23816 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm