Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193331 7.5 危険 headstart solutions - Headstart Solutions の DeskPRO におけるアプリケーションを再インストールされる脆弱性 - CVE-2006-6973 2012-09-25 15:36 2007-02-7 Show GitHub Exploit DB Packet Storm
193332 5 警告 Opera Software ASA - Opera における不正行為の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-6970 2012-09-25 15:36 2007-02-7 Show GitHub Exploit DB Packet Storm
193333 6.8 警告 jetty - Jetty におけるセッション識別子を推測される脆弱性 - CVE-2006-6969 2012-09-25 15:36 2007-02-7 Show GitHub Exploit DB Packet Storm
193334 5.8 警告 Phorum - Phorum の group moderation control center page におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6968 2012-09-25 15:36 2007-01-26 Show GitHub Exploit DB Packet Storm
193335 4 警告 MailEnable - MailEnable Professional における重要な情報を取得される脆弱性 - CVE-2006-6964 2012-09-25 15:36 2007-01-29 Show GitHub Exploit DB Packet Storm
193336 6.8 警告 Joomla! - Joomla! 用の RS Gallery2 コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-6962 2012-09-25 15:36 2007-01-29 Show GitHub Exploit DB Packet Storm
193337 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2006-6956 2012-09-25 15:36 2007-01-29 Show GitHub Exploit DB Packet Storm
193338 6.8 警告 odysseus blog - OdysseusBlog の blog.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6951 2012-09-25 15:36 2007-01-22 Show GitHub Exploit DB Packet Storm
193339 10 危険 owa - OWA の POP3/SMTP におけるバッファオーバーフローの脆弱性 - CVE-2006-6940 2012-09-25 15:36 2007-01-17 Show GitHub Exploit DB Packet Storm
193340 5 警告 nitrotech - NitroTech の includes/common.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6938 2012-09-25 15:36 2007-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
881 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OneTeamSoftware Radio Buttons and Swatches for WooCommerce allows Reflected XSS. This issue affec… CWE-79
Cross-site Scripting
CVE-2025-24551 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
882 - - - Cross-Site Request Forgery (CSRF) vulnerability in Mahbubur Rahman Post Meta allows Reflected XSS. This issue affects Post Meta: from n/a through 1.0.9. CWE-352
 Origin Validation Error
CVE-2025-24549 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
883 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SKT Themes SKT Donation allows Reflected XSS. This issue affects SKT Donation: from n/a through 1… CWE-79
Cross-site Scripting
CVE-2025-24535 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
884 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Emili Castells DPortfolio allows Reflected XSS. This issue affects DPortfolio: from n/a through 2… CWE-79
Cross-site Scripting
CVE-2025-24534 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
885 - - - Cross-Site Request Forgery (CSRF) vulnerability in jablonczay Scroll Styler. This issue affects Scroll Styler: from n/a through 1.1. CWE-352
 Origin Validation Error
CVE-2025-23990 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
886 - - - Cross-Site Request Forgery (CSRF) vulnerability in Alessandro Piconi - SabLab Internal Link Builder allows Cross Site Request Forgery. This issue affects Internal Link Builder: from n/a through 1.0. CWE-352
 Origin Validation Error
CVE-2025-23989 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
887 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodegearThemes Designer allows DOM-Based XSS. This issue affects Designer: from n/a through 1.6.0. CWE-79
Cross-site Scripting
CVE-2025-23987 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
888 - - - Cross-Site Request Forgery (CSRF) vulnerability in Brainvireinfo Dynamic URL SEO allows Cross Site Request Forgery. This issue affects Dynamic URL SEO: from n/a through 1.0. CWE-352
 Origin Validation Error
CVE-2025-23985 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
889 - - - Cross-Site Request Forgery (CSRF) vulnerability in James Andrews Full Circle allows Stored XSS. This issue affects Full Circle: from n/a through 0.5.7.8. CWE-352
 Origin Validation Error
CVE-2025-23980 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
890 - - - Cross-Site Request Forgery (CSRF) vulnerability in Ninos Ego FlashCounter allows Stored XSS. This issue affects FlashCounter: from n/a through 1.1.8. CWE-352
 Origin Validation Error
CVE-2025-23978 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm