Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
461 7.8 重要
Local
IBM Security Verify Access Docker IBM の Security Verify Access Docker における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2024-35140 2025-01-28 10:24 2024-05-30 Show GitHub Exploit DB Packet Storm
462 7.8 重要
Local
クアルコム sa8255p ファームウェア
snapdragon auto 5g modem-rf gen 2 ファームウェア
qcn6274 ファームウェア
Snapdragon W5+ Gen 1 Wearable Platform ファームウェア…
複数のクアルコム製品における解放済みメモリの使用に関する脆弱性 CWE-416
CWE-416
CVE-2023-43544 2025-01-28 10:24 2023-09-19 Show GitHub Exploit DB Packet Storm
463 4.8 警告
Network
WPExperts password protected WPExperts の WordPress 用 password protected におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0656 2025-01-28 10:24 2024-02-29 Show GitHub Exploit DB Packet Storm
464 5.4 警告
Network
moveaddons move addons for elementor moveaddons の WordPress 用 move addons for elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2131 2025-01-28 10:24 2024-03-23 Show GitHub Exploit DB Packet Storm
465 7.5 重要
Network
Magma Magma Linux Foundation の Magma における境界外読み取りに関する脆弱性 CWE-120
CWE-125
CVE-2024-24417 2025-01-28 10:24 2024-01-25 Show GitHub Exploit DB Packet Storm
466 5.3 警告
Network
JetBrains TeamCity JetBrains の TeamCity におけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
CWE-209
CVE-2024-36375 2025-01-28 10:24 2024-05-29 Show GitHub Exploit DB Packet Storm
467 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. w30e ファームウェア Shenzhen Tenda Technology Co.,Ltd. の w30e ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-3879 2025-01-28 10:24 2024-04-16 Show GitHub Exploit DB Packet Storm
468 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. w30e ファームウェア Shenzhen Tenda Technology Co.,Ltd. の w30e ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-3881 2025-01-28 10:24 2024-04-16 Show GitHub Exploit DB Packet Storm
469 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. tx9 pro ファームウェア Shenzhen Tenda Technology Co.,Ltd. の tx9 pro ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4111 2025-01-28 10:23 2024-04-24 Show GitHub Exploit DB Packet Storm
470 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. ax1806 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の ax1806 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4237 2025-01-28 10:23 2024-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1491 - - - In JetBrains TeamCity before 2024.12.2 several DOM-based XSS were possible on the Code Inspection Report tab CWE-79
Cross-site Scripting
CVE-2025-26493 2025-02-11 23:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1492 - - - In JetBrains TeamCity before 2024.12.2 improper Kubernetes connection settings could expose sensitive resources CWE-522
 Insufficiently Protected Credentials
CVE-2025-26492 2025-02-11 23:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1493 - - - PandasAI uses an interactive prompt function that is vulnerable to prompt injection and run arbitrary Python code that can lead to Remote Code Execution (RCE) instead of the intended explanation of t… - CVE-2024-12366 2025-02-11 23:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1494 6.2 MEDIUM
Local
- - A vulnerability has been identified in OpenV2G (All versions < V0.9.6). The OpenV2G EXI parsing feature is missing a length check when parsing X509 serial numbers. Thus, an attacker could introduce a… CWE-120
Classic Buffer Overflow
CVE-2025-24956 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1495 7.0 HIGH
Local
- - A vulnerability has been identified in SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonitor (All versions). The affected device do not properly restrict the user permission for the registry k… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2025-23403 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1496 7.4 HIGH
Network
- - A vulnerability has been identified in Teamcenter (All versions < V14.3.0.0). The SSO login service of affected applications accepts user-controlled input that could specify a link to an external sit… CWE-601
Open Redirect
CVE-2025-23363 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1497 4.9 MEDIUM
Network
- - The SuperSaaS – online appointment scheduling plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘after’ parameter in all versions up to, and including, 2.1.12 due to insuffici… CWE-79
Cross-site Scripting
CVE-2025-0862 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1498 6.5 MEDIUM
Network
- - A vulnerability has been identified in SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0) (All versions < V4.7), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0) (All versions < V4.7), S… CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2025-24812 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1499 7.5 HIGH
Network
- - A vulnerability has been identified in SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-… CWE-404
 Improper Resource Shutdown or Release
CVE-2025-24811 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1500 4.3 MEDIUM
Network
- - A vulnerability has been identified in SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0) (All versions < V3.0.0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0) (All versions < V3.0.0), SCALANCE WAM763-1 (ME) (6GK5763-… CWE-284
Improper Access Control
CVE-2025-24532 2025-02-11 20:15 2025-02-11 Show GitHub Exploit DB Packet Storm