Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
206531 5 警告 The PHP Group - PHP の SdnToJulian 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1466 2011-04-21 16:42 2011-03-17 Show GitHub Exploit DB Packet Storm
206532 5 警告 The PHP Group - PHP の grapheme_extract 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-0420 2011-04-21 16:40 2011-01-6 Show GitHub Exploit DB Packet Storm
206533 4.3 警告 The PHP Group - PHP の Zip 拡張モジュール内にある _zip_name_locate 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0421 2011-04-21 12:25 2011-03-17 Show GitHub Exploit DB Packet Storm
206534 4.3 警告 The PHP Group - 64-bit プラットフォーム上で稼働している PHP の exif.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-0708 2011-04-21 12:24 2011-03-17 Show GitHub Exploit DB Packet Storm
206535 7.5 危険 The PHP Group - PHP の ext/shmop/shmop.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1092 2011-04-21 12:22 2011-03-17 Show GitHub Exploit DB Packet Storm
206536 7.5 危険 The PHP Group - PHP の phar_object.c における重要な情報を取得される脆弱性 CWE-134
書式文字列の問題
CVE-2011-1153 2011-04-21 12:21 2011-03-17 Show GitHub Exploit DB Packet Storm
206537 4.3 警告 アップル - Apple iOS の MobileSafari の URL ハンドラにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0158 2011-04-8 16:22 2011-03-11 Show GitHub Exploit DB Packet Storm
206538 6.9 警告 Linux
レッドハット
- Linux kernel の ACPI サブシステムにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4347 2011-04-8 13:35 2010-12-9 Show GitHub Exploit DB Packet Storm
206539 5 警告 レッドハット
OpenLDAP Foundation
- OpenLDAP の modrdn.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1081 2011-04-8 13:34 2011-02-10 Show GitHub Exploit DB Packet Storm
206540 6.8 警告 レッドハット
OpenLDAP Foundation
- OpenLDAP の bind.cpp におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-1025 2011-04-8 13:34 2011-02-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1961 - - - A vulnerability, which was classified as problematic, has been found in code-projects Online Book Shop 1.0. Affected by this issue is some unknown functionality of the file /subcat.php. The manipulat… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0301 2025-01-8 03:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1962 - - - In versions 1.0.67 and lower of the Splunk App for SOAR, the Splunk documentation for that app recommended adding the `admin_all_objects` capability to the `splunk_app_soar` role. This addition could… - CVE-2025-22621 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1963 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ali Ali Alpha Price Table For Elementor allows DOM-Based XSS.This issue affects Alpha Price Table… CWE-79
Cross-site Scripting
CVE-2025-22500 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1964 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eric McNiece EMC2 Alert Boxes allows Stored XSS.This issue affects EMC2 Alert Boxes: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-22365 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1965 - - - Missing Authorization vulnerability in ORION Allada T-shirt Designer for Woocommerce.This issue affects Allada T-shirt Designer for Woocommerce: from n/a through 1.1. CWE-862
 Missing Authorization
CVE-2025-22363 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1966 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Code Themes Digi Store allows DOM-Based XSS.This issue affects Digi Store: from n/a through 1.1.4. CWE-79
Cross-site Scripting
CVE-2025-22354 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1967 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WpIndeed Ultimate Learning Pro allows SQL Injection.This issue affects Ultimate Learning Pro: fro… CWE-89
SQL Injection
CVE-2025-22350 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1968 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FilaThemes Education LMS allows Stored XSS.This issue affects Education LMS: from n/a through 0.0… CWE-79
Cross-site Scripting
CVE-2025-22334 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1969 - - - Missing Authorization vulnerability in DearHive Social Media Share Buttons | MashShare.This issue affects Social Media Share Buttons | MashShare: from n/a through 4.0.47. CWE-862
 Missing Authorization
CVE-2025-22319 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
1970 - - - Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability in Link Whisper Link Whisper Free.This issue affects Link Whisper Free: from n/a through 0.7.7. CWE-538
 File and Directory Information Exposure
CVE-2025-22306 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm