Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Dec. 28, 2024, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203181 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-1199 2011-11-17 10:40 2011-03-8 Show GitHub Exploit DB Packet Storm
203182 7.5 危険 Google - Google Chrome のビデオ機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-1198 2011-11-17 10:39 2011-03-8 Show GitHub Exploit DB Packet Storm
203183 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-1197 2011-11-17 10:37 2011-03-8 Show GitHub Exploit DB Packet Storm
203184 7.5 危険 Google - Google Chrome の OGG コンテナの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-1196 2011-11-17 10:35 2011-03-8 Show GitHub Exploit DB Packet Storm
203185 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1195 2011-11-17 10:35 2011-03-8 Show GitHub Exploit DB Packet Storm
203186 5 警告 Google - Google Chrome におけるポップアップブロッカーを回避される脆弱性 CWE-noinfo
情報不足
CVE-2011-1194 2011-11-17 10:32 2011-03-8 Show GitHub Exploit DB Packet Storm
203187 7.5 危険 Google - Google Chrome で使用される Google V8 における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1193 2011-11-17 10:31 2011-03-8 Show GitHub Exploit DB Packet Storm
203188 5 警告 Google - Linux 上で動作する Google Chrome におけるサービス運用妨害 (out-of-bounds read) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-1192 2011-11-17 10:30 2011-03-8 Show GitHub Exploit DB Packet Storm
203189 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1191 2011-11-17 10:30 2011-03-8 Show GitHub Exploit DB Packet Storm
203190 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-1189 2011-11-17 10:29 2011-03-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Dec. 28, 2024, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
491 6.5 MEDIUM
Network
- - The WP Docs plugin for WordPress is vulnerable to time-based SQL Injection via the 'dir_id' parameter in all versions up to, and including, 2.2.0 due to insufficient escaping on the user supplied par… CWE-89
SQL Injection
CVE-2024-12635 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
492 6.1 MEDIUM
Network
- - The Ebook Store plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'step' parameter in all versions up to, and including, 5.8001 due to insufficient input sanitization and o… CWE-79
Cross-site Scripting
CVE-2024-12262 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
493 8.8 HIGH
Network
- - The SMSA Shipping(official) plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the smsa_delete_label() function in all versions up to, and inclu… CWE-73
 External Control of File Name or Path
CVE-2024-12066 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
494 6.1 MEDIUM
Network
- - The Reactflow Visitor Recording and Heatmaps plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.10. This is due to missing or incorrect nonce v… CWE-352
 Origin Validation Error
CVE-2024-11975 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
495 6.4 MEDIUM
Network
- - The One Click Upsell Funnel for WooCommerce – Funnel Builder for WordPress, Create WooCommerce Upsell, Post-Purchase Upsell & Cross Sell Offers that Boost Sales & Increase Profits with Sales Funnel … CWE-79
Cross-site Scripting
CVE-2024-11938 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
496 6.1 MEDIUM
Network
- - The G Web Pro Store Locator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'q' parameter in all versions up to, and including, 2.1 due to insufficient input sanitization… CWE-79
Cross-site Scripting
CVE-2024-11682 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
497 6.1 MEDIUM
Network
- - The Ebook Store plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 5.80… CWE-79
Cross-site Scripting
CVE-2024-11287 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
498 6.4 MEDIUM
Network
- - The Multi-column Tag Map plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's mctagmap shortcode in all versions up to, and including, 17.0.33 due to insufficient input … CWE-79
Cross-site Scripting
CVE-2024-11196 2024-12-21 16:15 2024-12-21 Show GitHub Exploit DB Packet Storm
499 7.3 HIGH
Network
- - The The kk Star Ratings – Rate Post & Collect User Feedbacks plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.4.10. This is due to the softw… CWE-94
Code Injection
CVE-2024-11977 2024-12-21 15:15 2024-12-21 Show GitHub Exploit DB Packet Storm
500 - - - A vulnerability, which was classified as problematic, has been found in Emlog Pro up to 2.4.1. Affected by this issue is some unknown functionality of the file /admin/link.php. The manipulation of th… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-12846 2024-12-21 14:15 2024-12-21 Show GitHub Exploit DB Packet Storm