Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 20, 2025, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
311 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-46715 2025-01-17 17:12 2024-06-13 Show GitHub Exploit DB Packet Storm
312 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2022-48648 2025-01-17 17:10 2022-09-19 Show GitHub Exploit DB Packet Storm
313 8.8 重要
Network
Huawei EGRT-00 ファームウェア Huawei の EGRT-00 ファームウェアにおける古典的バッファオーバーフローの脆弱性 CWE-119
CWE-120
CVE-2022-48681 2025-01-17 17:07 2024-05-28 Show GitHub Exploit DB Packet Storm
314 4.7 警告
Local
Linux Linux Kernel Linux の Linux Kernel における Time-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
CWE-476
CVE-2024-42107 2025-01-17 17:06 2024-07-3 Show GitHub Exploit DB Packet Storm
315 6.1 警告
Local
Linux Linux Kernel Linux の Linux Kernel における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2023-52497 2025-01-17 17:04 2023-12-15 Show GitHub Exploit DB Packet Storm
316 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2022
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-843
CVE-2024-49119 2025-01-17 16:59 2024-12-10 Show GitHub Exploit DB Packet Storm
317 9.8 緊急
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Window…
Windows Lightweight Directory Access Protocol (LDAP) のリモートでコードが実行される脆弱性 CWE-190
CWE-noinfo
CVE-2024-49112 2025-01-17 16:55 2024-12-10 Show GitHub Exploit DB Packet Storm
318 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2022
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-416
CWE-591
CVE-2024-49115 2025-01-17 16:49 2024-12-10 Show GitHub Exploit DB Packet Storm
319 6.4 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-190
CWE-noinfo
CVE-2024-28923 2025-01-17 16:46 2024-04-9 Show GitHub Exploit DB Packet Storm
320 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2022-49035 2025-01-17 16:43 2022-09-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 20, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
451 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Justin Kuepper QuoteMedia Tools allows DOM-Based XSS.This issue affects QuoteMedia Tools: from n/… CWE-79
Cross-site Scripting
CVE-2025-23644 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
452 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pflonk Sidebar-Content from Shortcode allows DOM-Based XSS.This issue affects Sidebar-Content fro… CWE-79
Cross-site Scripting
CVE-2025-23642 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
453 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Thomas Ehrhardt Powie's pLinks PagePeeker allows DOM-Based XSS.This issue affects Powie's pLinks … CWE-79
Cross-site Scripting
CVE-2025-23641 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
454 - - - Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan Rename Author Slug allows Stored XSS.This issue affects Rename Author Slug: from n/a through 1.2.0. CWE-352
 Origin Validation Error
CVE-2025-23640 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
455 - - - Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan MDC YouTube Downloader allows Stored XSS.This issue affects MDC YouTube Downloader: from n/a through 3.0.0. CWE-352
 Origin Validation Error
CVE-2025-23639 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
456 - - - Cross-Site Request Forgery (CSRF) vulnerability in Gordon French Comment-Emailer allows Stored XSS.This issue affects Comment-Emailer: from n/a through 1.0.5. CWE-352
 Origin Validation Error
CVE-2025-23627 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
457 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mahesh Bisen Contact Form 7 – CCAvenue Add-on allows Reflected XSS.This issue affects Contact For… CWE-79
Cross-site Scripting
CVE-2025-23623 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
458 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alexey Trofimov Captchelfie – Captcha by Selfie allows Reflected XSS.This issue affects Captchelf… CWE-79
Cross-site Scripting
CVE-2025-23620 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
459 - - - Cross-Site Request Forgery (CSRF) vulnerability in Andrea Brandi Twitter Shortcode allows Stored XSS.This issue affects Twitter Shortcode: from n/a through 0.9. CWE-352
 Origin Validation Error
CVE-2025-23618 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
460 - - - Cross-Site Request Forgery (CSRF) vulnerability in Oliver Schaal Floatbox Plus allows Stored XSS.This issue affects Floatbox Plus: from n/a through 1.4.4. CWE-352
 Origin Validation Error
CVE-2025-23617 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm