Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 11, 2025, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
31 7 重要
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Windows USB プリント ドライバーの特権の昇格の脆弱性 New CWE-126
CWE-362
CVE-2024-26243 2025-01-10 17:37 2024-04-9 Show GitHub Exploit DB Packet Storm
32 6.5 警告
Network
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows Server 2008
Microsoft Windows Server&…
Windows Kerberos のサービス拒否の脆弱性 New CWE-476
CWE-noinfo
CVE-2024-26183 2025-01-10 17:36 2024-04-9 Show GitHub Exploit DB Packet Storm
33 8 重要
Adjacent
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 New CWE-121
CWE-noinfo
CVE-2024-26180 2025-01-10 17:34 2024-04-9 Show GitHub Exploit DB Packet Storm
34 8 重要
Adjacent
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows Server 2008
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 New CWE-20
CWE-noinfo
CVE-2024-26240 2025-01-10 17:32 2024-04-9 Show GitHub Exploit DB Packet Storm
35 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Windows DWM Core ライブラリの情報漏えいの脆弱性 New CWE-125
CWE-noinfo
CVE-2024-26172 2025-01-10 17:32 2024-04-9 Show GitHub Exploit DB Packet Storm
36 7.3 重要
Local
マイクロソフト PowerShell
Microsoft .NET Framework
.NET
Microsoft Visual Studio
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability New CWE-416
CWE-noinfo
CVE-2024-21409 2025-01-10 17:30 2024-04-9 Show GitHub Exploit DB Packet Storm
37 7 重要
Local
マイクロソフト Microsoft Windows Server 2022 Windows Update スタックの特権の昇格の脆弱性 New CWE-362
CWE-591
CVE-2024-26236 2025-01-10 17:28 2024-04-9 Show GitHub Exploit DB Packet Storm
38 7.8 重要
Local
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows Server 2019
Microsoft Windows Server&…
Windows カーネルの特権の昇格の脆弱性 New CWE-426
CWE-noinfo
CVE-2024-20693 2025-01-10 17:26 2024-04-9 Show GitHub Exploit DB Packet Storm
39 7.8 重要
Local
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows Server 2008
Microsoft Windows Server&…
Windows 暗号化サービスのセキュリティ機能のバイパスの脆弱性 New CWE-310
CWE-347
CVE-2024-26228 2025-01-10 17:25 2024-04-9 Show GitHub Exploit DB Packet Storm
40 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 New CWE-203
CWE-416
CVE-2024-26221 2025-01-10 17:19 2024-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 11, 2025, 5:03 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
121 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno TinCan Question Type allows PHP Local File Inclusion.This issue affects Opigno … New - CVE-2024-13267 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
122 - - - Incorrect Authorization vulnerability in Drupal Responsive and off-canvas menu allows Forceful Browsing.This issue affects Responsive and off-canvas menu: from 0.0.0 before 4.4.4. New - CVE-2024-13266 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
123 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno Learning path allows PHP Local File Inclusion.This issue affects Opigno Learnin… New - CVE-2024-13265 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
124 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno module allows PHP Local File Inclusion.This issue affects Opigno module: from 0… New - CVE-2024-13264 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
125 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue affects Opigno group m… New - CVE-2024-13263 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
126 - - - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Acquia DAM allows Cross Site Request Forgery.This issue affects Acquia DAM: from 0.0.0 before 1.0.13, from 1.1.0 before 1.1.0-beta3. New - CVE-2024-13261 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
127 - - - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Migrate queue importer allows Cross Site Request Forgery.This issue affects Migrate queue importer: from 0.0.0 before 2.1.1. New - CVE-2024-13260 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
128 9.8 CRITICAL
Network
- - The WPBookit plugin for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 1.6.4. This is due to the plugin providing user-controlled access to objects, letti… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-10215 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
129 - - - Insertion of Sensitive Information Into Sent Data vulnerability in Drupal Image Sizes allows Forceful Browsing.This issue affects Image Sizes: from 0.0.0 before 3.0.2. New - CVE-2024-13259 2025-01-10 04:15 2025-01-10 Show GitHub Exploit DB Packet Storm
130 - - - Incorrect Authorization vulnerability in Drupal Drupal REST & JSON API Authentication allows Forceful Browsing.This issue affects Drupal REST & JSON API Authentication: from 0.0.0 before 2.0.13. New - CVE-2024-13258 2025-01-10 04:15 2025-01-10 Show GitHub Exploit DB Packet Storm