Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 6:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
451 6.5 警告
Local
cilium cilium cilium における脆弱性 New CWE-200
CWE-noinfo
CVE-2024-37307 2025-01-14 16:17 2024-06-13 Show GitHub Exploit DB Packet Storm
452 7.5 重要
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における暗号アルゴリズムの使用に関する脆弱性 New CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2024-25963 2025-01-14 16:16 2024-03-28 Show GitHub Exploit DB Packet Storm
453 5.4 警告
Network
argoproj argo cd argoproj の argo cd におけるクロスサイトスクリプティングの脆弱性 New CWE-79
CWE-79
CVE-2024-28175 2025-01-14 16:16 2024-03-13 Show GitHub Exploit DB Packet Storm
454 6.5 警告
Network
argoproj argo cd argoproj の argo cd における脆弱性 New CWE-400
CWE-noinfo
CVE-2024-29893 2025-01-14 16:15 2024-03-29 Show GitHub Exploit DB Packet Storm
455 5.9 警告
Network
sigstore cosign sigstore の cosign における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
CWE-770
CVE-2024-29902 2025-01-14 16:15 2024-04-10 Show GitHub Exploit DB Packet Storm
456 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における古典的バッファオーバーフローの脆弱性 New CWE-120
古典的バッファオーバーフロー
CVE-2021-47040 2025-01-14 16:14 2021-04-17 Show GitHub Exploit DB Packet Storm
457 5.4 警告
Network
WPZOOM beaver builder addons WPZOOM の WordPress 用 beaver builder addons におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2181 2025-01-14 16:08 2024-04-9 Show GitHub Exploit DB Packet Storm
458 5.4 警告
Network
IdeaBox Creations PowerPack Addons for Elementor IdeaBox Creations の WordPress 用 PowerPack Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2492 2025-01-14 16:08 2024-04-9 Show GitHub Exploit DB Packet Storm
459 7.8 重要
Local
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における重要な情報の平文での送信に関する脆弱性 New CWE-319
重要な情報の平文での送信
CVE-2024-25960 2025-01-14 16:08 2024-03-28 Show GitHub Exploit DB Packet Storm
460 5.4 警告
Network
ThimPress LearnPress ThimPress の WordPress 用 LearnPress におけるユーザ制御の鍵による認証回避に関する脆弱性 New CWE-639
ユーザ制御の鍵による認証回避
CVE-2024-1289 2025-01-14 16:06 2024-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 16, 2025, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
161 6.1 MEDIUM
Network
- - The Car Demon plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search_condition' parameter in all versions up to, and including, 1.8.1 due to insufficient input sanitizat… New CWE-79
Cross-site Scripting
CVE-2024-13334 2025-01-15 13:15 2025-01-15 Show GitHub Exploit DB Packet Storm
162 7.8 HIGH
Local
- - Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability New CWE-416
 Use After Free
CVE-2025-21335 2025-01-15 11:00 2025-01-15 Show GitHub Exploit DB Packet Storm
163 7.8 HIGH
Local
- - Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability New CWE-416
 Use After Free
CVE-2025-21334 2025-01-15 11:00 2025-01-15 Show GitHub Exploit DB Packet Storm
164 7.8 HIGH
Local
- - Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability New CWE-122
Heap-based Buffer Overflow
CVE-2025-21333 2025-01-15 11:00 2025-01-15 Show GitHub Exploit DB Packet Storm
165 - - - An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 through 7.0.19 and 7.2.0 through 7.2.12… New CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-55591 2025-01-15 11:00 2025-01-14 Show GitHub Exploit DB Packet Storm
166 - - - A stored cross-site scripting (XSS) vulnerability in the prf_table_content component of Linksys E5600 Router Ver. 1.1.0.26 allows attackers to execute arbitrary web scripts or HTML via a crafted payl… New - CVE-2025-22997 2025-01-15 09:15 2025-01-15 Show GitHub Exploit DB Packet Storm
167 - - - A stored cross-site scripting (XSS) vulnerability in the spf_table_content component of Linksys E5600 Router Ver. 1.1.0.26 allows attackers to execute arbitrary web scripts or HTML via a crafted payl… New - CVE-2025-22996 2025-01-15 09:15 2025-01-15 Show GitHub Exploit DB Packet Storm
168 - - - MSFM before v2025.01.01 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /file/download. New - CVE-2024-57767 2025-01-15 09:15 2025-01-15 Show GitHub Exploit DB Packet Storm
169 - - - MSFM before 2025.01.01 was discovered to contain a fastjson deserialization vulnerability via the component system/table/editField. New - CVE-2024-57766 2025-01-15 09:15 2025-01-15 Show GitHub Exploit DB Packet Storm
170 - - - MSFM before 2025.01.01 was discovered to contain a SQL injection vulnerability via the s_name parameter at table/list. New - CVE-2024-57765 2025-01-15 09:15 2025-01-15 Show GitHub Exploit DB Packet Storm