Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 22, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
51 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. 4g300 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の 4g300 ファームウェアにおける境界外書き込みに関する脆弱性 New CWE-121
CWE-787
CVE-2024-4166 2025-01-22 16:35 2024-04-25 Show GitHub Exploit DB Packet Storm
52 6.1 警告
Network
Fortra FileCatalyst Direct Fortra の FileCatalyst Direct におけるクロスサイトスクリプティングの脆弱性 New CWE-79
CWE-79
CVE-2024-25155 2025-01-22 16:35 2024-03-13 Show GitHub Exploit DB Packet Storm
53 8.8 重要
Network
XWiki xwiki XWiki の xwiki における認証の欠如に関する脆弱性 New CWE-862
CWE-862
CVE-2024-31981 2025-01-22 16:35 2024-04-10 Show GitHub Exploit DB Packet Storm
54 8.8 重要
Network
XWiki xwiki XWiki の xwiki における認証の欠如に関する脆弱性 New CWE-862
CWE-862
CVE-2024-31987 2025-01-22 16:35 2024-04-10 Show GitHub Exploit DB Packet Storm
55 5.4 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-32572 2025-01-22 16:35 2024-04-18 Show GitHub Exploit DB Packet Storm
56 5.4 警告
Network
webangon the pack elementor addons webangon の WordPress 用 the pack elementor addons におけるサーバサイドのリクエストフォージェリの脆弱性 New CWE-918
サーバサイドリクエストフォージェリ
CVE-2024-32718 2025-01-22 16:35 2024-04-24 Show GitHub Exploit DB Packet Storm
57 5.4 警告
Network
Leap13 Premium Addons for Elementor Leap13 の WordPress 用 Premium Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-32791 2025-01-22 16:35 2024-04-24 Show GitHub Exploit DB Packet Storm
58 5.4 警告
Network
TYPO3 Association TYPO3 TYPO3 Association の TYPO3 におけるクロスサイトスクリプティングの脆弱性 New CWE-116
CWE-79
CWE-79
CVE-2024-34355 2025-01-22 16:35 2024-05-14 Show GitHub Exploit DB Packet Storm
59 7.5 重要
Network
BlackBerry QNX Software Development Platform BlackBerry の QNX Software Development Platform における境界外読み取りに関する脆弱性 New CWE-125
CWE-125
CVE-2024-48855 2025-01-22 16:35 2024-10-8 Show GitHub Exploit DB Packet Storm
60 7.5 重要
Network
bdthemes element pack bdthemes の WordPress 用 element pack における脆弱性 New CWE-noinfo
情報不足
CVE-2024-2966 2025-01-22 16:27 2024-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 22, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
501 - - - Cross-Site Request Forgery (CSRF) vulnerability in Laxman Thapa Content Security Policy Pro allows Cross Site Request Forgery.This issue affects Content Security Policy Pro: from n/a through 1.3.5. CWE-352
 Origin Validation Error
CVE-2025-23820 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
502 - - - Cross-Site Request Forgery (CSRF) vulnerability in Peggy Kuo More Link Modifier allows Stored XSS.This issue affects More Link Modifier: from n/a through 1.0.3. CWE-352
 Origin Validation Error
CVE-2025-23818 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
503 - - - Cross-Site Request Forgery (CSRF) vulnerability in Mahadir Ahmad MHR-Custom-Anti-Copy allows Stored XSS.This issue affects MHR-Custom-Anti-Copy: from n/a through 2.0. CWE-352
 Origin Validation Error
CVE-2025-23817 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
504 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in metaphorcreations Metaphor Widgets allows Stored XSS. This issue affects Metaphor Widgets: from n… CWE-79
Cross-site Scripting
CVE-2025-23816 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
505 - - - Cross-Site Request Forgery (CSRF) vulnerability in linickx root Cookie allows Cross Site Request Forgery. This issue affects root Cookie: from n/a through 1.6. CWE-352
 Origin Validation Error
CVE-2025-23815 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
506 - - - Cross-Site Request Forgery (CSRF) vulnerability in Igor Sazonov Len Slider allows Reflected XSS.This issue affects Len Slider: from n/a through 2.0.11. CWE-352
 Origin Validation Error
CVE-2025-23810 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
507 - - - Cross-Site Request Forgery (CSRF) vulnerability in Matt van Andel Custom List Table Example allows Reflected XSS.This issue affects Custom List Table Example: from n/a through 1.4.1. CWE-352
 Origin Validation Error
CVE-2025-23808 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
508 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jimmy Hu Spiderpowa Embed PDF allows Stored XSS.This issue affects Spiderpowa Embed PDF: from n/a… CWE-79
Cross-site Scripting
CVE-2025-23807 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
509 - - - Cross-Site Request Forgery (CSRF) vulnerability in SEOReseller Team SEOReseller Partner allows Cross Site Request Forgery.This issue affects SEOReseller Partner: from n/a through 1.3.15. CWE-352
 Origin Validation Error
CVE-2025-23805 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm
510 - - - Cross-Site Request Forgery (CSRF) vulnerability in Shiv Prakash Tiwari WP Service Payment Form With Authorize.net allows Reflected XSS.This issue affects WP Service Payment Form With Authorize.net: f… CWE-352
 Origin Validation Error
CVE-2025-23804 2025-01-17 06:15 2025-01-17 Show GitHub Exploit DB Packet Storm