Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192991 6.8 警告 interspire - Interspire SendStudio における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1060 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192992 7.5 危険 online web building - Online Web Building の user_pages/page.asp における SQL インジェクションの脆弱性 - CVE-2007-1058 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192993 6.9 警告 Nortel Networks - Nortel Application Switch などの製品で使用される Net Direct クライアントにおける他のユーザに任意のコードを実行される脆弱性 - CVE-2007-1057 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192994 6.8 警告 MediaWiki - MediaWiki の AJAX 機能におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1055 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192995 6.8 警告 MediaWiki - MediaWiki の AJAX 機能におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1054 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192996 10 危険 malbum - mAlbum における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-1045 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192997 5 警告 Pearson Education, Inc. - Pearson Education PowerSchool における admin フォルダの内容をリスト化される脆弱性 CWE-200
情報漏えい
CVE-2007-1044 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192998 10 危険 peanutkb - PeanutKB における脆弱性 - CVE-2007-1039 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192999 7.5 危険 レッドハット - JBoss のディフォルト設定における管理アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-1036 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
193000 7.8 危険 Niels Provos - Niels Provos libevent におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1030 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1931 - - - A vulnerability, which was classified as problematic, was found in Webkul QloApps 1.6.1. This affects an unknown part of the file /stores of the component Your Location Search. The manipulation leads… - CVE-2025-1155 2025-02-11 06:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1932 - - - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.9.1, an unsafe deserialization vulnerability allows for … CWE-502
 Deserialization of Untrusted Data
CVE-2025-24016 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1933 6.3 MEDIUM
Network
- - A vulnerability, which was classified as critical, has been found in xxyopen Novel up to 3.4.1. Affected by this issue is some unknown functionality of the file /api/front/search/books. The manipulat… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1154 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1934 - - - An SQL injection vulnerability exists in Stock-Forecaster <=01-04-2020. By sending a specially crafted 'stock-symbol' parameter to the portofolio() endpoint, it is possible to trigger an SQL injectio… - CVE-2024-57178 2025-02-11 05:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1935 3.1 LOW
Network
- - A vulnerability classified as problematic was found in GNU Binutils 2.43/2.44. Affected by this vulnerability is the function bfd_set_format of the file format.c. The manipulation leads to memory cor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-1153 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1936 9.8 CRITICAL
Network
- - The WP Foodbakery plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'upload_publisher_profile_image' function in versions up to, and includi… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-13011 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1937 6.1 MEDIUM
Network
- - The WP Foodbakery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.7 due to insufficient input sanitization and output escaping on the 'search_… CWE-79
Cross-site Scripting
CVE-2024-13010 2025-02-11 04:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1938 - - - Hickory DNS is a Rust based DNS client, server, and resolver. A vulnerability present starting in version 0.8.0 and prior to versions 0.24.3 and 0.25.0-alpha.5 impacts Hickory DNS users relying on DN… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2025-25188 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1939 3.1 LOW
Network
- - A vulnerability classified as problematic has been found in GNU Binutils 2.43. Affected is the function xstrdup of the file xstrdup.c of the component ld. The manipulation leads to memory leak. It is… CWE-404
CWE-401
 Improper Resource Shutdown or Release
 Missing Release of Memory after Effective Lifetime
CVE-2025-1152 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1940 - - - An arbitrary file upload vulnerability in the component /userPicture of Timo v2.0.3 allows attackers to execute arbitrary code via uploading a crafted file. - CVE-2024-57407 2025-02-11 03:15 2025-02-11 Show GitHub Exploit DB Packet Storm