Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 11, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
61 6.7 警告
Local
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における脆弱性 New CWE-269
CWE-noinfo
CVE-2024-25961 2025-01-10 16:28 2024-03-28 Show GitHub Exploit DB Packet Storm
62 7.5 重要
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における脆弱性 New CWE-385
CWE-Other
CVE-2024-25964 2025-01-10 16:28 2024-03-25 Show GitHub Exploit DB Packet Storm
63 7.5 重要
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における脆弱性 New CWE-241
CWE-Other
CVE-2024-25966 2025-01-10 16:28 2024-05-14 Show GitHub Exploit DB Packet Storm
64 6.5 警告
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における脆弱性 New CWE-20
CWE-noinfo
CVE-2024-25970 2025-01-10 16:28 2024-05-14 Show GitHub Exploit DB Packet Storm
65 7.2 重要
Network
phpMyFAQ phpMyFAQ phpMyFAQ における危険なタイプのファイルの無制限アップロードに関する脆弱性 New CWE-434
CWE-434
CVE-2024-28105 2025-01-10 16:28 2024-03-25 Show GitHub Exploit DB Packet Storm
66 8.8 重要
Network
phpMyFAQ phpMyFAQ phpMyFAQ における SQL インジェクションの脆弱性 New CWE-89
CWE-89
CVE-2024-28107 2025-01-10 16:28 2024-03-25 Show GitHub Exploit DB Packet Storm
67 6.1 警告
Adjacent
cilium cilium cilium における重要な情報の平文での送信に関する脆弱性 New CWE-311
CWE-319
CVE-2024-28249 2025-01-10 16:28 2024-03-18 Show GitHub Exploit DB Packet Storm
68 7.5 重要
Network
sigstore cosign sigstore の cosign における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
CWE-770
CVE-2024-29903 2025-01-10 16:28 2024-04-10 Show GitHub Exploit DB Packet Storm
69 4.9 警告
Network
XWiki xwiki XWiki の xwiki における強度が不十分なパスワードハッシュの使用に関する脆弱性 New CWE-200
CWE-916
CVE-2024-31464 2025-01-10 16:28 2024-04-10 Show GitHub Exploit DB Packet Storm
70 9 緊急
Adjacent
argoproj argo cd argoproj の argo cd における暗号アルゴリズムの使用に関する脆弱性 New CWE-327
CWE-327
CVE-2024-31989 2025-01-10 16:28 2024-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 12, 2025, 4:59 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Tooltip allows Cross-Site Scripting (XSS).This issue affects Tooltip: from 0.0.0 before 1.… New - CVE-2024-13292 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
212 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Cookiebot + GTM allows Cross-Site Scripting (XSS).This issue affects Cookiebot + GTM: from… New - CVE-2024-13289 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
213 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Views SVG Animation allows Cross-Site Scripting (XSS).This issue affects Views SVG Animati… New - CVE-2024-13287 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
214 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal SVG Embed allows Cross-Site Scripting (XSS).This issue affects SVG Embed: from 0.0.0 befor… New - CVE-2024-13286 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
215 - - - Vulnerability in Drupal wkhtmltopdf.This issue affects wkhtmltopdf: *.*. New - CVE-2024-13285 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
216 - - - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Gutenberg allows Cross Site Request Forgery.This issue affects Gutenberg: from 0.0.0 before 2.13.0, from 3.0.0 before 3.0.5. New - CVE-2024-13284 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
217 - - - Incorrect Authorization vulnerability in Drupal Block permissions allows Forceful Browsing.This issue affects Block permissions: from 1.0.0 before 1.2.0. New - CVE-2024-13282 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
218 - - - Incorrect Authorization vulnerability in Drupal Monster Menus allows Forceful Browsing.This issue affects Monster Menus: from 0.0.0 before 9.3.2. New - CVE-2024-13281 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
219 - - - Insufficient Session Expiration vulnerability in Drupal Persistent Login allows Forceful Browsing.This issue affects Persistent Login: from 0.0.0 before 1.8.0, from 2.0.* before 2.2.2. New - CVE-2024-13280 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
220 - - - Session Fixation vulnerability in Drupal Two-factor Authentication (TFA) allows Session Fixation.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.8.0. New - CVE-2024-13279 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm