Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
261 5.4 警告
Network
creativethemes blocksy companion creativethemes の WordPress 用 blocksy companion におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4487 2025-01-29 13:46 2024-05-14 Show GitHub Exploit DB Packet Storm
262 8.1 重要
Network
miniOrange Miniorange OTP Verification with Firebase miniOrange の WordPress 用 Miniorange OTP Verification with Firebase における重要な機能に対する認証の欠如に関する脆弱性 CWE-288
CWE-306
CVE-2024-9861 2025-01-29 13:46 2024-10-17 Show GitHub Exploit DB Packet Storm
263 5.5 警告
Local
デル Dell Grab デルの Windows 用 Dell Grab におけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2024-25957 2025-01-29 12:07 2024-03-26 Show GitHub Exploit DB Packet Storm
264 5.4 警告
Network
HasThemes HT Mega - Absolute Addons For Elementor HasThemes の WordPress 用 HT Mega - Absolute Addons For Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-3989 2025-01-29 11:46 2024-05-14 Show GitHub Exploit DB Packet Storm
265 5.4 警告
Network
creativethemes blocksy creativethemes の WordPress 用 blocksy におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4158 2025-01-29 11:46 2024-05-14 Show GitHub Exploit DB Packet Storm
266 7.3 重要
Local
インテル Quartus Prime インテルの Quartus Prime における制御されていない検索パスの要素に関する脆弱性 CWE-427
CWE-427
CVE-2024-21777 2025-01-29 11:46 2024-05-16 Show GitHub Exploit DB Packet Storm
267 7.3 重要
Local
インテル Quartus Prime インテルの Quartus Prime における制御されていない検索パスの要素に関する脆弱性 CWE-427
CWE-427
CVE-2024-21862 2025-01-29 11:46 2024-05-16 Show GitHub Exploit DB Packet Storm
268 9.8 緊急
Network
クアルコム (複数の製品) キヤノン製スモールオフィス向け複合機およびレーザービームプリンターにおける複数の境界外書き込みの脆弱性 CWE-787
境界外書き込み
CVE-2024-12647
CVE-2024-12648
CVE-2024-12649
2025-01-29 11:42 2025-01-28 Show GitHub Exploit DB Packet Storm
269 5.4 警告
Network
Extend Themes colibri page builder Extend Themes の WordPress 用 colibri page builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-3337 2025-01-29 11:42 2024-05-2 Show GitHub Exploit DB Packet Storm
270 5.4 警告
Network
Liferay Digital Experience Platform
Liferay Portal
Liferay の Liferay Portal および Digital Experience Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-25151 2025-01-29 11:42 2024-02-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
981 - - - Affected products contain a vulnerability in the device cloud rpc command handling process that could allow remote attackers to take control over arbitrary devices connected to the cloud. CWE-78
OS Command 
CVE-2025-0680 2025-01-31 04:15 2025-01-31 Show GitHub Exploit DB Packet Storm
982 5.5 MEDIUM
Local
apple macos The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3. Parsing a file may lead to an unexpected app termination. NVD-CWE-noinfo
CVE-2025-24112 2025-01-31 03:54 2025-01-28 Show GitHub Exploit DB Packet Storm
983 7.8 HIGH
Local
apple macos
ipados
iphone_os
watchos
tvos
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.3, tvOS 18.3, watchOS 11.3, iOS 18.3 and iPadOS 18.3. A malicious app may be able to gain root … NVD-CWE-noinfo
CVE-2025-24107 2025-01-31 03:53 2025-01-28 Show GitHub Exploit DB Packet Storm
984 5.5 MEDIUM
Local
apple macos This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.2. An app may be able to access user-sensitive data. NVD-CWE-noinfo
CVE-2024-54549 2025-01-31 03:43 2025-01-28 Show GitHub Exploit DB Packet Storm
985 5.5 MEDIUM
Local
apple iphone_os
visionos
macos
watchos
tvos
ipados
The issue was addressed with improved memory handling. This issue is fixed in iPadOS 17.7.4, macOS Ventura 13.7.3, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, wat… NVD-CWE-noinfo
CVE-2025-24086 2025-01-31 03:18 2025-01-28 Show GitHub Exploit DB Packet Storm
986 4.7 MEDIUM
Local
apple macos A race condition was addressed with additional validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to access user-sensitive data. CWE-362
Race Condition
CVE-2025-24094 2025-01-31 03:17 2025-01-28 Show GitHub Exploit DB Packet Storm
987 5.5 MEDIUM
Local
apple macos The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia 15.3. An app may be able to access protected user data. CWE-281
 Improper Preservation of Permissions
CVE-2025-24087 2025-01-31 03:17 2025-01-28 Show GitHub Exploit DB Packet Storm
988 3.3 LOW
Local
apple macos A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to access information about a user's c… NVD-CWE-noinfo
CVE-2025-24100 2025-01-31 03:16 2025-01-28 Show GitHub Exploit DB Packet Storm
989 5.5 MEDIUM
Local
apple macos This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3. A malicious app may be able to access arbitrary files. NVD-CWE-noinfo
CVE-2025-24096 2025-01-31 03:16 2025-01-28 Show GitHub Exploit DB Packet Storm
990 6.3 MEDIUM
Network
- - A vulnerability, which was classified as critical, has been found in code-projects Simple Plugins Car Rental Management 1.0. Affected by this issue is some unknown functionality of the file /admin/ap… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0874 2025-01-31 03:15 2025-01-31 Show GitHub Exploit DB Packet Storm