Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
411 4.3 警告
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Microsoft Window…
MapUrlToZone セキュリティ機能のバイパスの脆弱性 CWE-41
CWE-noinfo
CVE-2025-21219 2025-01-28 14:05 2025-01-14 Show GitHub Exploit DB Packet Storm
412 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Window…
Microsoft Message Queuing (MSMQ) のサービス拒否の脆弱性 CWE-20
CWE-400
CWE-noinfo
CVE-2025-21230 2025-01-28 14:05 2025-01-14 Show GitHub Exploit DB Packet Storm
413 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Window…
Windows デジタル メディアの特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2025-21226 2025-01-28 14:02 2025-01-14 Show GitHub Exploit DB Packet Storm
414 4.2 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Window…
Windows BitLocker の情報漏えいの脆弱性 CWE-200
CWE-noinfo
CVE-2025-21214 2025-01-28 13:59 2025-01-14 Show GitHub Exploit DB Packet Storm
415 6.8 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Window…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-693
CWE-noinfo
CVE-2025-21211 2025-01-28 13:56 2025-01-14 Show GitHub Exploit DB Packet Storm
416 7.5 重要
Network
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Microsoft Window…
Windows Connected Devices Platform Service (Cdpsvc) サービス拒否の脆弱性 CWE-400
CWE-noinfo
CVE-2025-21207 2025-01-28 13:53 2025-01-14 Show GitHub Exploit DB Packet Storm
417 4.3 警告
Network
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Window…
MapUrlToZone セキュリティ機能のバイパスの脆弱性 CWE-41
CWE-noinfo
CVE-2025-21189 2025-01-28 13:50 2025-01-14 Show GitHub Exploit DB Packet Storm
418 4.6 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Window…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-284
CWE-noinfo
CVE-2025-21213 2025-01-28 13:49 2025-01-14 Show GitHub Exploit DB Packet Storm
419 7.8 重要
Local
マイクロソフト Microsoft Office
Microsoft 365 Apps
Microsoft Access
Microsoft Access のリモート コードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21186 2025-01-28 13:46 2025-01-14 Show GitHub Exploit DB Packet Storm
420 5.4 警告
Network
Leap13 Premium Addons for Elementor Leap13 の WordPress 用 Premium Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-29106 2025-01-28 13:30 2024-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 14, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1361 - - - eladmin <=2.7 is vulnerable to CSV Injection in the exception log download module. - CVE-2025-22978 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1362 - - - Directory Traversal vulnerability in Zrlog backup-sql-file.jar v.3.0.31 allows a remote attacker to obtain sensitive information via the BackupController.java file. - CVE-2024-57669 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1363 - - - ChestnutCMS <=1.5.0 is vulnerable to File Upload via the Create template function. - CVE-2024-57450 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1364 - - - ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of the model management feature, allowing them to execu… - CVE-2024-57099 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1365 - - - Moss v0.1.3 version has an SQL injection vulnerability that allows attackers to inject carefully designed payloads into the order parameter. - CVE-2024-57098 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1366 - - - An issue was discovered in Open5gs v2.7.2. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of gmm_state_exception() function upon receipt … - CVE-2024-56921 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1367 - - - itsourcecode Placement Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Full Name field in registration.php. - CVE-2024-50656 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1368 - - - lunasvg v3.0.1 was discovered to contain a segmentation violation via the component gray_find_cell - CVE-2024-55456 2025-02-5 01:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1369 5.4 MEDIUM
Network
motopress stratum The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Hotspot widget in all versions up to, and including, 1.4.7 due to insufficient… CWE-79
Cross-site Scripting
CVE-2024-13642 2025-02-5 01:00 2025-01-30 Show GitHub Exploit DB Packet Storm
1370 6.1 MEDIUM
Network
metagauss registrationmagic Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss User Registration Forms RegistrationMagic allows Reflected XSS. This issue affects Regi… CWE-79
Cross-site Scripting
CVE-2025-24686 2025-02-5 00:51 2025-01-31 Show GitHub Exploit DB Packet Storm