Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 22, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
281 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における無効なポインタや参照の解放に関する脆弱性 New CWE-763
無効なポインタや参照の解放
CVE-2021-47087 2025-01-20 16:44 2021-12-16 Show GitHub Exploit DB Packet Storm
282 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 New CWE-noinfo
情報不足
CVE-2023-52562 2025-01-20 16:41 2023-09-11 Show GitHub Exploit DB Packet Storm
283 6.1 警告
Network
Manuel Aldape Genesis AIMS Student Information Systems Manuel Aldape の Genesis AIMS Student Information Systems におけるクロスサイトスクリプティングの脆弱性 New CWE-79
CWE-79
CVE-2024-22936 2025-01-20 16:41 2024-02-29 Show GitHub Exploit DB Packet Storm
284 6.5 警告
Network
フォーティネット FortiOS フォーティネットの FortiOS における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2023-42785 2025-01-20 16:40 2023-09-14 Show GitHub Exploit DB Packet Storm
285 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 New CWE-noinfo
情報不足
CVE-2023-52559 2025-01-20 16:39 2023-09-25 Show GitHub Exploit DB Packet Storm
286 9.8 緊急
Network
Argie Online courseware Argie の Online Courseware における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2024-3419 2025-01-20 16:32 2024-04-7 Show GitHub Exploit DB Packet Storm
287 5.3 警告
Network
RadiusTheme classified listing - classified ads & business directory RadiusTheme の WordPress 用 classified listing - classified ads & business directory における認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2024-1352 2025-01-20 16:24 2024-04-9 Show GitHub Exploit DB Packet Storm
288 8.8 重要
Network
illumio core policy compute engine Illumio の Illumio Core Policy Compute Engine における信頼できないデータのデシリアライゼーションに関する脆弱性 Update CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2023-5183 2025-01-20 16:24 2023-09-27 Show GitHub Exploit DB Packet Storm
289 6.5 警告
Network
Hire Web Xperts Passwords Manager Hire Web Xperts の WordPress 用 Passwords Manager における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2024-12615 2025-01-20 16:17 2024-12-13 Show GitHub Exploit DB Packet Storm
290 4.3 警告
Network
zixn Buy one click WooCommerce zixn の WordPress 用 Buy one click WooCommerce における認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2024-10854 2025-01-20 16:06 2024-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 22, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 - - - An access control issue in the component form2RepeaterSetup.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G repeater service of the device via a … - CVE-2024-57679 2025-01-17 04:15 2025-01-17 Show GitHub Exploit DB Packet Storm
652 - - - An access control issue in the component form2WlAc.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G mac access control list of the device via a cr… - CVE-2024-57678 2025-01-17 04:15 2025-01-17 Show GitHub Exploit DB Packet Storm
653 - - - An access control issue in the component form2Wan.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the wan service of the device via a crafted POST request. - CVE-2024-57677 2025-01-17 04:15 2025-01-17 Show GitHub Exploit DB Packet Storm
654 - - - An access control issue in the component form2WlanBasicSetup.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G wlan service of the device via a cra… - CVE-2024-57676 2025-01-17 04:15 2025-01-17 Show GitHub Exploit DB Packet Storm
655 - - - Gomatrixserverlib is a Go library for matrix federation. Gomatrixserverlib is vulnerable to server-side request forgery, serving content from a private network it can access, under certain conditions… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-52594 2025-01-17 04:15 2025-01-17 Show GitHub Exploit DB Packet Storm
656 - - - Buffer Overflow vulnerability in Neat Board NFC v.1.20240620.0015 allows a physically proximate attackers to escalate privileges via a crafted payload to the password field - CVE-2024-48806 2025-01-17 04:15 2025-01-10 Show GitHub Exploit DB Packet Storm
657 - - - Canlineapp Online 1.1 is vulnerable to Broken Access Control and allows users with the Auditor role to create an audit template as a result of improper authorization checks. This feature is designate… - CVE-2024-56114 2025-01-17 04:15 2025-01-10 Show GitHub Exploit DB Packet Storm
658 - - - Mattermost Mobile versions <= 2.22.0 fail to properly validate the style of proto supplied to an action's style in post.props.attachments, which allows an attacker to crash the mobile via crafted mal… - CVE-2025-20072 2025-01-17 03:15 2025-01-17 Show GitHub Exploit DB Packet Storm
659 - - - A cross-site scripting (XSS) vulnerability in the /apply/getEditPage?view interface of JFinalOA before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. - CVE-2024-57776 2025-01-17 03:15 2025-01-17 Show GitHub Exploit DB Packet Storm
660 - - - JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component getWorkFlowHis?insid. - CVE-2024-57775 2025-01-17 03:15 2025-01-17 Show GitHub Exploit DB Packet Storm