Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 27, 2025, 12:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
531 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Access
Microsoft Access のリモート コードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21395 2025-01-21 14:52 2025-01-14 Show GitHub Exploit DB Packet Storm
532 7.8 重要
Local
クアルコム WSA8830 ファームウェア
Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB
 BB) ファームウェア
sc8380xp ファームウェア
WCD9385 ファームウェア
fastconnect …
複数のクアルコム製品における脆弱性 CWE-284
CWE-Other
CVE-2024-23360 2025-01-21 14:42 2024-06-3 Show GitHub Exploit DB Packet Storm
533 6.3 警告
Network
マイクロソフト Microsoft SharePoint Enterprise Server
Microsoft SharePoint Server
Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
CWE-noinfo
CVE-2025-21393 2025-01-21 14:30 2025-01-14 Show GitHub Exploit DB Packet Storm
534 5.5 警告
Network
Alex Kirk Friends Alex Kirk の Friends におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2024-1978 2025-01-21 14:22 2024-02-29 Show GitHub Exploit DB Packet Storm
535 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Office のリモート コードが実行される脆弱性 CWE-426
CWE-noinfo
CVE-2025-21365 2025-01-21 14:21 2025-01-14 Show GitHub Exploit DB Packet Storm
536 4.3 警告
Network
Really Simple Plugins Complianz - GDPR/CCPA Cookie Consent Complianz の WordPress 用 Complianz - GDPR/CCPA Cookie Consent におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1592 2025-01-21 14:18 2024-03-2 Show GitHub Exploit DB Packet Storm
537 5 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chrome ベース) のセキュリティ機能のバイパスの脆弱性 CWE-94
CWE-noinfo
CVE-2024-29991 2025-01-21 14:15 2024-04-19 Show GitHub Exploit DB Packet Storm
538 4.3 警告
Network
フォーティネット FortiOS
FortiProxy
フォーティネットの FortiProxy および FortiOS における脆弱性 CWE-358
CWE-Other
CVE-2024-33510 2025-01-21 13:55 2024-11-12 Show GitHub Exploit DB Packet Storm
539 6.5 警告
Network
フォーティネット FortiOS フォーティネットの FortiOS における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2023-42786 2025-01-21 13:52 2023-09-14 Show GitHub Exploit DB Packet Storm
540 2.7
Network
フォーティネット Fortiweb FortiWebにおけるSQLインジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-55593 2025-01-21 12:26 2025-01-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 27, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
641 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound LH Email allows Reflected XSS. This issue affects LH Email: from n/a through 1.12. CWE-79
Cross-site Scripting
CVE-2025-23676 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
642 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Bit.ly linker allows Reflected XSS. This issue affects Bit.ly linker: from n/a through 1… CWE-79
Cross-site Scripting
CVE-2025-23674 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
643 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Instant Appointment allows Reflected XSS. This issue affects Instant Appointment: from n… CWE-79
Cross-site Scripting
CVE-2025-23672 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
644 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound ReadMe Creator allows Reflected XSS. This issue affects ReadMe Creator: from n/a through… CWE-79
Cross-site Scripting
CVE-2025-23643 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
645 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Content Planner allows Reflected XSS. This issue affects Content Planner: from n/a throu… CWE-79
Cross-site Scripting
CVE-2025-23631 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
646 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Cyber Slider allows Reflected XSS. This issue affects Cyber Slider: from n/a through 1.1. CWE-79
Cross-site Scripting
CVE-2025-23630 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
647 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AWcode, PDSonline Unique UX allows Reflected XSS. This issue affects Unique UX: from n/a through … CWE-79
Cross-site Scripting
CVE-2025-23625 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
648 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound WH Cache & Security allows Reflected XSS. This issue affects WH Cache & Security: from n… CWE-79
Cross-site Scripting
CVE-2025-23611 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
649 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Ultimate Events allows Reflected XSS. This issue affects Ultimate Events: from n/a throu… CWE-79
Cross-site Scripting
CVE-2025-23610 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm
650 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Helmuth Lammer Tagesteller allows Reflected XSS. This issue affects Tagesteller: from n/a through… CWE-79
Cross-site Scripting
CVE-2025-23609 2025-01-23 00:15 2025-01-23 Show GitHub Exploit DB Packet Storm