Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191791 9.3 危険 jeeblestechnology - Jeebles Directory の download.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5706 2012-09-25 16:59 2007-10-29 Show GitHub Exploit DB Packet Storm
191792 6 警告 jeeblestechnology - Jeebles Directory の Settings コンポーネントにおける任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5705 2012-09-25 16:59 2007-10-29 Show GitHub Exploit DB Packet Storm
191793 4.3 警告 Novell - Novell OpenSUSE SWAMP Workflow Administration などにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5702 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
191794 4.3 警告 Mozilla Foundation - Mozilla Firefox の ParseFTPList.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-5691 2012-09-25 16:59 2007-10-29 Show GitHub Exploit DB Packet Storm
191795 7.5 危険 Invision Power Services, Inc
phpBB
sebflipper
- phpBB などの Multi-Forums モジュールの directory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5688 2012-09-25 16:59 2007-10-29 Show GitHub Exploit DB Packet Storm
191796 4.3 警告 hackish - Hackish の shoutbox/blocco.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5677 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
191797 7.5 危険 multixtpm - MultiXTpm Application Server におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5675 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
191798 6.8 警告 instaguide - InstaGuide Weather の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5674 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
191799 4.3 警告 ifnet - ifnet の WebIf の cgi-bin/webif.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5673 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
191800 7.2 危険 Novell - Novell ZENworks ESM の STEngine.exe における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5665 2012-09-25 16:59 2008-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1801 - - - A vulnerability, which was classified as problematic, was found in Webkul QloApps 1.6.1. This affects an unknown part of the file /stores of the component Your Location Search. The manipulation leads… - CVE-2025-1155 2025-02-11 06:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1802 - - - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.9.1, an unsafe deserialization vulnerability allows for … CWE-502
 Deserialization of Untrusted Data
CVE-2025-24016 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1803 6.3 MEDIUM
Network
- - A vulnerability, which was classified as critical, has been found in xxyopen Novel up to 3.4.1. Affected by this issue is some unknown functionality of the file /api/front/search/books. The manipulat… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1154 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1804 - - - An SQL injection vulnerability exists in Stock-Forecaster <=01-04-2020. By sending a specially crafted 'stock-symbol' parameter to the portofolio() endpoint, it is possible to trigger an SQL injectio… - CVE-2024-57178 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1805 3.1 LOW
Network
- - A vulnerability classified as problematic was found in GNU Binutils 2.43/2.44. Affected by this vulnerability is the function bfd_set_format of the file format.c. The manipulation leads to memory cor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-1153 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1806 9.8 CRITICAL
Network
- - The WP Foodbakery plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'upload_publisher_profile_image' function in versions up to, and includi… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-13011 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1807 6.1 MEDIUM
Network
- - The WP Foodbakery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.7 due to insufficient input sanitization and output escaping on the 'search_… CWE-79
Cross-site Scripting
CVE-2024-13010 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1808 - - - Hickory DNS is a Rust based DNS client, server, and resolver. A vulnerability present starting in version 0.8.0 and prior to versions 0.24.3 and 0.25.0-alpha.5 impacts Hickory DNS users relying on DN… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2025-25188 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1809 3.1 LOW
Network
- - A vulnerability classified as problematic has been found in GNU Binutils 2.43. Affected is the function xstrdup of the file xstrdup.c of the component ld. The manipulation leads to memory leak. It is… CWE-404
CWE-401
 Improper Resource Shutdown or Release
 Missing Release of Memory after Effective Lifetime
CVE-2025-1152 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1810 - - - An arbitrary file upload vulnerability in the component /userPicture of Timo v2.0.3 allows attackers to execute arbitrary code via uploading a crafted file. - CVE-2024-57407 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm