Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
281 8.1 重要
Network
GLPI-PROJECT.ORG GLPI GLPI-PROJECT.ORG の GLPI における SQL インジェクションの脆弱性 CWE-89
CWE-89
CVE-2024-29889 2025-01-29 10:59 2024-05-7 Show GitHub Exploit DB Packet Storm
282 7.3 重要
Local
インテル Intel Driver and Support Assistant インテルの Intel Driver and Support Assistant における制御されていない検索パスの要素に関する脆弱性 CWE-427
CWE-427
CVE-2023-45743 2025-01-29 10:54 2023-10-12 Show GitHub Exploit DB Packet Storm
283 6.1 警告
Network
Incsub forminator Incsub の WordPress 用 forminator におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1794 2025-01-29 10:54 2024-04-9 Show GitHub Exploit DB Packet Storm
284 5.4 警告
Network
HasThemes HT Mega - Absolute Addons For Elementor HasThemes の WordPress 用 HT Mega - Absolute Addons For Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2085 2025-01-29 10:54 2024-05-2 Show GitHub Exploit DB Packet Storm
285 6.4 警告
Network
POSIMYTH The Plus Addons for Elementor Page Builder POSIMYTH の WordPress 用 The Plus Addons for Elementor Page Builder における脆弱性 CWE-noinfo
情報不足
CVE-2024-2210 2025-01-29 10:54 2024-03-27 Show GitHub Exploit DB Packet Storm
286 5.4 警告
Network
wpthemespace magical addons for elementor wpthemespace の WordPress 用 magical addons for elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2923 2025-01-29 10:54 2024-05-14 Show GitHub Exploit DB Packet Storm
287 5.4 警告
Network
HasThemes HT Mega - Absolute Addons For Elementor HasThemes の WordPress 用 HT Mega - Absolute Addons For Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5215 2025-01-29 10:54 2024-06-26 Show GitHub Exploit DB Packet Storm
288 7.3 重要
Local
インテル Quartus Prime インテルの Quartus Prime における制御されていない検索パスの要素に関する脆弱性 CWE-427
CWE-427
CVE-2024-21837 2025-01-29 10:54 2024-05-16 Show GitHub Exploit DB Packet Storm
289 5.4 警告
Network
Liferay Digital Experience Platform
Liferay Portal
Liferay の Liferay Portal および Digital Experience Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-25602 2025-01-29 10:54 2024-02-21 Show GitHub Exploit DB Packet Storm
290 5.4 警告
Network
Liferay Digital Experience Platform
Liferay Portal
Liferay の Liferay Portal および Digital Experience Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-26266 2025-01-29 10:54 2024-02-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 12, 2025, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273991 - oracle e-business_suite Unspecified vulnerability in the Agile Engineering Data Management (EDM) component in Oracle E-Business Suite 6.1.0.0 allows remote attackers to affect confidentiality, integrity, and availability vi… NVD-CWE-noinfo
CVE-2009-3392 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273992 - oracle e-business_suite Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2009-3393 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273993 - oracle e-business_suite Unspecified vulnerability in the AutoVue component in Oracle E-Business Suite 19.3.2 allows remote attackers to affect availability via unknown vectors. NVD-CWE-noinfo
CVE-2009-3395 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273994 - oracle bea_product_suite Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2.3, 10.0.1, and 10.3 allows remote attackers to affect integrity, related to WLS Console. NVD-CWE-noinfo
CVE-2009-3396 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273995 - oracle e-business_suite Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.1 allows remote attackers to affect confidentiality via unknown vectors. NVD-CWE-noinfo
CVE-2009-3397 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273996 - oracle bea_product_suite Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 7.0.6 and 8.1.5 allows remote attackers to affect integrity, related to WLS Console. NVD-CWE-noinfo
CVE-2009-3399 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273997 - oracle e-business_suite Unspecified vulnerability in the Oracle Advanced Benefits component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.1 allows remote authenticated users to affect confidentiality and integrity … NVD-CWE-noinfo
CVE-2009-3400 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273998 - oracle e-business_suite Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.1 allows local users to affect confidentiality via unknown vecto… NVD-CWE-noinfo
CVE-2009-3401 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
273999 - oracle e-business_suite Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.1 allows remote authenticated users to affect confidentiality via unkno… NVD-CWE-noinfo
CVE-2009-3402 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm
274000 - oracle bea_product_suite Unspecified vulnerability in the JRockit component in BEA Product Suite R27.6.4: JRE/JDK, 1.4.2, 5, and, and 6 allows remote attackers to affect confidentiality, integrity, and availability via unkno… NVD-CWE-noinfo
CVE-2009-3403 2012-10-23 12:11 2009-10-23 Show GitHub Exploit DB Packet Storm