Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
661 6.1 警告
Network
Basixonline NEX-Forms Basixonline の WordPress 用 NEX-Forms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-47389 2025-01-24 14:47 2024-10-5 Show GitHub Exploit DB Packet Storm
662 5.3 警告
Network
Nextcloud Nextcloud Server Nextcloud の Nextcloud Server における脆弱性 CWE-328
CWE-Other
CVE-2024-52521 2025-01-24 14:47 2024-11-15 Show GitHub Exploit DB Packet Storm
663 7.8 重要
Local
インテル graphics performance analyzers インテルの graphics performance analyzers における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
CWE-276
CVE-2023-24460 2025-01-24 14:47 2023-03-2 Show GitHub Exploit DB Packet Storm
664 5.5 警告
Local
IObit Protected Folder IObit の Protected Folder における NULL ポインタデリファレンスに関する脆弱性 CWE-404
CWE-476
CWE-476
CVE-2025-0222 2025-01-24 14:47 2025-01-5 Show GitHub Exploit DB Packet Storm
665 8.8 重要
Network
truepush truepush Truepush の WordPress 用 Truepush - Most Affordable Web Push Notifications における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-44021 2025-01-24 14:42 2024-11-1 Show GitHub Exploit DB Packet Storm
666 6.5 警告
Network
PHPGurukul Hostel Management System surya2developer の Hostel Management System におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2024-2481 2025-01-24 14:28 2024-03-15 Show GitHub Exploit DB Packet Storm
667 5.5 警告
Local
IObit Protected Folder IObit の Protected Folder における NULL ポインタデリファレンスに関する脆弱性 CWE-404
CWE-476
CWE-476
CVE-2025-0223 2025-01-24 14:27 2025-01-5 Show GitHub Exploit DB Packet Storm
668 3.7
Network
PHPGurukul Hostel Management System surya2developer の Hostel Management System におけるリクエストに対するレスポンス内容の違いに起因する情報漏えいに関する脆弱性 CWE-204
リクエストに対するレスポンス内容の違いに起因する情報漏えい
CVE-2024-2482 2025-01-24 14:23 2024-03-15 Show GitHub Exploit DB Packet Storm
669 5.4 警告
Network
WordPress Download Manager download manager wpdownloadmanager の WordPress 用 download manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2023-6954 2025-01-24 14:22 2023-12-19 Show GitHub Exploit DB Packet Storm
670 5.3 警告
Network
LifterLMS LifterLMS WordPress 用 LifterLMS における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-0377 2025-01-24 14:22 2024-03-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
951 5.4 MEDIUM
Network
- - IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used i… CWE-80
Basic XSS
CVE-2024-35112 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
952 4.3 MEDIUM
Network
- - IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in … CWE-209
Information Exposure Through an Error Message
CVE-2024-35111 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
953 5.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could disclose sensitive information about the system that could aid in further attacks against the syst… CWE-209
Information Exposure Through an Error Message
CVE-2023-38716 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
954 5.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that co… CWE-209
Information Exposure Through an Error Message
CVE-2023-38714 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
955 5.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that co… CWE-209
Information Exposure Through an Error Message
CVE-2023-38713 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
956 4.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could allow an authenticated user to obtain sensitive informa… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2023-38271 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
957 5.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information in HTTP responses that c… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2023-38013 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
958 5.3 MEDIUM
Network
- - IBM Cloud Pak System 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially… CWE-22
Path Traversal
CVE-2023-38012 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
959 7.5 HIGH
Network
- - The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.14.5 via the uploads dire… CWE-200
Information Exposure
CVE-2024-13562 2025-01-25 21:15 2025-01-25 Show GitHub Exploit DB Packet Storm
960 6.4 MEDIUM
Network
- - The Divi Carousel Maker – Image, Logo, Testimonial, Post Carousel & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Carousel and Logo Carousel in all ver… CWE-79
Cross-site Scripting
CVE-2025-0350 2025-01-25 19:15 2025-01-25 Show GitHub Exploit DB Packet Storm