Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193381 7.5 危険 open newsletter - Open Newsletter の settings.php などのスクリプトにおける不正な管理者の操作を実行される脆弱性 - CVE-2006-6785 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193382 7.5 危険 netbula - Netbula Anyboard における SQL インジェクションの脆弱性 - CVE-2006-6784 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193383 7.5 危険 logahead - logahead UNU における任意のファイルをアップロードされる脆弱性 CWE-287
不適切な認証
CVE-2006-6783 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193384 5 警告 hlstats - HLstats における重要な情報を取得される脆弱性 - CVE-2006-6781 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193385 9.4 危険 oftpd - oftpd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6767 2012-09-25 15:36 2007-01-16 Show GitHub Exploit DB Packet Storm
193386 7.5 危険 hlstats - HLstats のログインフォームにおける SQL インジェクションの脆弱性 - CVE-2006-6780 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193387 6.8 警告 vBulletin Solutions, Inc. - Jelsoft vBulletin におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6779 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193388 6.8 警告 irokez - Irokez CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6771 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193389 6.8 警告 jinzora - Jinzora Media Jukebox における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6770 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193390 6.8 警告 php live - PHP Live! におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6769 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
871 - - - Cross-Site Request Forgery (CSRF) vulnerability in Overt Software Solutions LTD EZPZ SAML SP Single Sign On (SSO) allows Cross Site Request Forgery. This issue affects EZPZ SAML SP Single Sign On (SS… CWE-352
 Origin Validation Error
CVE-2025-24749 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
872 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SWIT WP Sessions Time Monitoring Full Automatic allows Reflected XSS. This issue affects WP Sessi… CWE-79
Cross-site Scripting
CVE-2025-24718 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
873 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marcel Pol Gwolle Guestbook allows Reflected XSS. This issue affects Gwolle Guestbook: from n/a t… CWE-79
Cross-site Scripting
CVE-2025-24710 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
874 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Paytm Paytm Payment Donation allows Reflected XSS. This issue affects Paytm Payment Donation: fro… CWE-79
Cross-site Scripting
CVE-2025-24635 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
875 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AlgolPlus Advanced Dynamic Pricing for WooCommerce allows Reflected XSS. This issue affects Advan… CWE-79
Cross-site Scripting
CVE-2025-24632 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
876 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PortOne PORTONE ???? ?? allows Reflected XSS. This issue affects PORTONE ???? ??: from n/a throug… CWE-79
Cross-site Scripting
CVE-2025-24609 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
877 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Milan Petrovic GD Mail Queue allows Reflected XSS. This issue affects GD Mail Queue: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-24608 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
878 - - - Insertion of Sensitive Information Into Sent Data vulnerability in UkrSolution Barcode Generator for WooCommerce allows Retrieve Embedded Sensitive Data. This issue affects Barcode Generator for WooC… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2025-24597 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
879 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGlow Cleanup – Directory Listing & Classifieds WordPress Plugin allows Reflected XSS. This i… CWE-79
Cross-site Scripting
CVE-2025-24563 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm
880 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Awesome TOGI Awesome Event Booking allows Reflected XSS. This issue affects Awesome Event Booking… CWE-79
Cross-site Scripting
CVE-2025-24560 2025-01-31 18:15 2025-01-31 Show GitHub Exploit DB Packet Storm