Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
691 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2023-52485 2025-01-14 16:29 2023-12-19 Show GitHub Exploit DB Packet Storm
692 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-53200 2025-01-14 16:26 2024-11-20 Show GitHub Exploit DB Packet Storm
693 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-46964 2025-01-14 16:26 2021-04-15 Show GitHub Exploit DB Packet Storm
694 3.3
Local
- アップルの macOS における脆弱性 CWE-noinfo
情報不足
CVE-2024-54491 2025-01-14 16:24 2024-12-11 Show GitHub Exploit DB Packet Storm
695 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-47073 2025-01-14 16:23 2021-05-19 Show GitHub Exploit DB Packet Storm
696 5.5 警告
Local
マイクロソフト Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows Cloud Files Mini Filter ドライバーの情報漏えいの脆弱性 CWE-843
CWE-noinfo
CVE-2024-30034 2025-01-14 16:21 2024-05-14 Show GitHub Exploit DB Packet Storm
697 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-47066 2025-01-14 16:20 2021-04-26 Show GitHub Exploit DB Packet Storm
698 7.8 重要
Local
マイクロソフト Microsoft Windows 10
Microsoft Windows Server 2019
Windows カーネルモード ドライバーの特権の昇格の脆弱性 CWE-416
CWE-noinfo
CVE-2024-49074 2025-01-14 16:20 2024-12-10 Show GitHub Exploit DB Packet Storm
699 6.8 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Microsoft Window…
Windows モバイル ブロードバンド ドライバーの特権昇格の脆弱性 CWE-125
CWE-191
CWE-noinfo
CVE-2024-49077 2025-01-14 16:20 2024-12-10 Show GitHub Exploit DB Packet Storm
700 6.8 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Microsoft Window…
Windows モバイル ブロードバンド ドライバーの特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2024-49083 2025-01-14 16:20 2024-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 9.8 CRITICAL
Network
- - The Adifier System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.1.7. This is due to the plugin not properly validating a use… New CWE-620
 Unverified Password Change
CVE-2024-13375 2025-01-18 18:15 2025-01-18 Show GitHub Exploit DB Packet Storm
12 7.5 HIGH
Network
- - The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to time-based SQL Injection via the Login Attempts module in all versions up to, and including, 3.0.12 due to insuf… New CWE-89
SQL Injection
CVE-2024-13184 2025-01-18 18:15 2025-01-18 Show GitHub Exploit DB Packet Storm
13 - - - A vulnerability, which was classified as problematic, was found in code-projects Tourism Management System 1.0. Affected is an unknown function of the file /admin/manage-pages.php. The manipulation o… New - CVE-2025-0538 2025-01-18 18:15 2025-01-18 Show GitHub Exploit DB Packet Storm
14 - - - A vulnerability, which was classified as problematic, has been found in code-projects Car Rental Management System 1.0. This issue affects some unknown processing of the file /admin/manage-pages.php.… New - CVE-2025-0537 2025-01-18 18:15 2025-01-18 Show GitHub Exploit DB Packet Storm
15 6.4 MEDIUM
Network
- - The Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_reviews' shortcode in all versions up to… New CWE-79
Cross-site Scripting
CVE-2024-13392 2025-01-18 17:15 2025-01-18 Show GitHub Exploit DB Packet Storm
16 4.3 MEDIUM
Network
- - The Buzz Club – Night Club, DJ and Music Festival Event WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing ca… New CWE-862
 Missing Authorization
CVE-2025-0515 2025-01-18 16:15 2025-01-18 Show GitHub Exploit DB Packet Storm
17 6.4 MEDIUM
Network
- - The JetEngine plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘list_tag’ parameter in all versions up to, and including, 3.6.2 due to insufficient input sanitization and out… New CWE-79
Cross-site Scripting
CVE-2025-0369 2025-01-18 16:15 2025-01-18 Show GitHub Exploit DB Packet Storm
18 4.4 MEDIUM
Network
- - The MarketKing — Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via plugin's settings in all versions up to, and including, 1.… New CWE-79
Cross-site Scripting
CVE-2024-13519 2025-01-18 16:15 2025-01-18 Show GitHub Exploit DB Packet Storm
19 4.4 MEDIUM
Network
- - The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Title value in all versions up to, and including,… New CWE-79
Cross-site Scripting
CVE-2024-13517 2025-01-18 16:15 2025-01-18 Show GitHub Exploit DB Packet Storm
20 6.4 MEDIUM
Network
- - The Utilities for MTG plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mtglink' shortcode in all versions up to, and including, 1.4.1 due to insufficient input sani… New CWE-79
Cross-site Scripting
CVE-2024-13433 2025-01-18 16:15 2025-01-18 Show GitHub Exploit DB Packet Storm