Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 22, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
341 5.4 警告
Network
instantcms instantcms instantcms におけるオープンリダイレクトの脆弱性 New CWE-601
CWE-601
CVE-2024-31213 2025-01-20 14:09 2024-04-5 Show GitHub Exploit DB Packet Storm
342 5.5 警告
Local
マイクロソフト Microsoft Windows 10
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2008
Microsoft Window…
Windows Remote Access Connection Manager の情報漏えいの脆弱性 New CWE-126
CWE-noinfo
CVE-2024-30039 2025-01-20 14:04 2024-05-14 Show GitHub Exploit DB Packet Storm
343 7.8 重要
Local
マイクロソフト Microsoft Windows 10
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2008
Microsoft Window…
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 New CWE-125
CWE-noinfo
CVE-2024-29996 2025-01-20 14:00 2024-05-14 Show GitHub Exploit DB Packet Storm
344 7.2 重要
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows 分散ファイル システム (DFS) のリモートでコードが実行される脆弱性 New CWE-367
CWE-noinfo
CVE-2024-29066 2025-01-20 13:56 2024-04-9 Show GitHub Exploit DB Packet Storm
345 8.8 重要
Network
マイクロソフト Microsoft SQL Server SQL Server Native Client OLE DB プロバイダーのリモート コード実行に対する脆弱性 New CWE-122
CWE-noinfo
CVE-2024-21335 2025-01-20 13:51 2024-07-9 Show GitHub Exploit DB Packet Storm
346 8.8 重要
Network
マイクロソフト Microsoft SQL Server SQL Server Native Client OLE DB プロバイダーのリモート コード実行に対する脆弱性 New CWE-416
CWE-noinfo
CVE-2024-21332 2025-01-20 13:47 2024-07-9 Show GitHub Exploit DB Packet Storm
347 5.3 警告
Network
Debian
レッドハット
Fedora Project
Net-SNMP
Red Hat Enterprise Linux for IBM z Systems
Debian GNU/Linux
enterprise linux for arm 64
enterprise linux for arm&nb…
Net-SNMP の Net-SNMP 等複数ベンダの製品における脆弱性 New CWE-20
CWE-noinfo
CVE-2022-24806 2025-01-20 13:28 2022-02-10 Show GitHub Exploit DB Packet Storm
348 6.5 警告
Network
Debian
レッドハット
Fedora Project
Net-SNMP
Red Hat Enterprise Linux for IBM z Systems
Debian GNU/Linux
enterprise linux for arm 64
enterprise linux for arm&nb…
Net-SNMP の Net-SNMP 等複数ベンダの製品における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
CWE-476
CVE-2022-24809 2025-01-20 13:27 2022-02-10 Show GitHub Exploit DB Packet Storm
349 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2024-57799 2025-01-20 12:28 2024-12-8 Show GitHub Exploit DB Packet Storm
350 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2024-56551 2025-01-20 12:25 2024-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 22, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
621 - - - Cross-Site Request Forgery (CSRF) vulnerability in mastersoftwaresolutions WP VTiger Synchronization allows Stored XSS.This issue affects WP VTiger Synchronization: from n/a through 1.1.1. CWE-352
 Origin Validation Error
CVE-2025-23455 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
622 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Myriad Solutionz Stars SMTP Mailer allows Reflected XSS.This issue affects Stars SMTP Mailer: fro… CWE-79
Cross-site Scripting
CVE-2025-23453 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
623 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in EditionGuard Dev Team EditionGuard for WooCommerce – eBook Sales with DRM allows Reflected XSS.Th… CWE-79
Cross-site Scripting
CVE-2025-23452 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
624 - - - Cross-Site Request Forgery (CSRF) vulnerability in Scott Swezey Easy Tynt allows Cross Site Request Forgery.This issue affects Easy Tynt: from n/a through 0.2.5.1. CWE-352
 Origin Validation Error
CVE-2025-23445 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
625 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nasir Scroll Top Advanced allows Stored XSS.This issue affects Scroll Top Advanced: from n/a thro… CWE-79
Cross-site Scripting
CVE-2025-23444 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
626 - - - Cross-Site Request Forgery (CSRF) vulnerability in matias s Shockingly Big IE6 Warning allows Stored XSS.This issue affects Shockingly Big IE6 Warning: from n/a through 1.6.3. CWE-352
 Origin Validation Error
CVE-2025-23442 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
627 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MarvinLabs WP PT-Viewer allows Reflected XSS.This issue affects WP PT-Viewer: from n/a through 2.… CWE-79
Cross-site Scripting
CVE-2025-23438 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
628 - - - Cross-Site Request Forgery (CSRF) vulnerability in Capa Wp-Scribd-List allows Stored XSS.This issue affects Wp-Scribd-List: from n/a through 1.2. CWE-352
 Origin Validation Error
CVE-2025-23436 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
629 - - - Cross-Site Request Forgery (CSRF) vulnerability in David Marcucci Password Protect Plugin for WordPress allows Stored XSS.This issue affects Password Protect Plugin for WordPress: from n/a through 0.… CWE-352
 Origin Validation Error
CVE-2025-23435 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm
630 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Albertolabs.com Easy EU Cookie law allows Stored XSS.This issue affects Easy EU Cookie law: from … CWE-79
Cross-site Scripting
CVE-2025-23434 2025-01-17 05:15 2025-01-17 Show GitHub Exploit DB Packet Storm