Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 27, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
771 7.5 重要
Network
Couchbase, Inc. couchbase server Couchbase, Inc. の Couchbase Server における脆弱性 CWE-200
CWE-noinfo
CVE-2024-23302 2025-01-20 15:15 2024-02-29 Show GitHub Exploit DB Packet Storm
772 5.4 警告
Network
Contao contao Contao におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-28190 2025-01-20 15:15 2024-04-9 Show GitHub Exploit DB Packet Storm
773 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Window…
Windows CSC サービスの情報漏えいの脆弱性 CWE-125
CWE-125
CVE-2025-21374 2025-01-20 15:15 2025-01-14 Show GitHub Exploit DB Packet Storm
774 6.5 警告
Network
Brizy brizy Brizy の WordPress 用 brizy におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2024-1165 2025-01-20 15:14 2024-02-26 Show GitHub Exploit DB Packet Storm
775 5.4 警告
Network
Brizy brizy Brizy の WordPress 用 brizy におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1291 2025-01-20 15:14 2024-03-13 Show GitHub Exploit DB Packet Storm
776 5.4 警告
Network
Themeisle Orbit Fox ThemeIsle の WordPress 用 Orbit Fox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1323 2025-01-20 15:14 2024-02-27 Show GitHub Exploit DB Packet Storm
777 4.3 警告
Network
zestard admin side data storage for contact form 7 zestard の WordPress 用 admin side data storage for contact form 7 におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1777 2025-01-20 15:14 2024-02-23 Show GitHub Exploit DB Packet Storm
778 9.1 緊急
Network
WPvivid Migration
 Backup
 Staging
WPvivid の WordPress 用 Migration, Backup, Staging における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-1982 2025-01-20 15:14 2024-02-29 Show GitHub Exploit DB Packet Storm
779 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Window…
Windows テレフォニー サービスのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21411 2025-01-20 15:12 2025-01-14 Show GitHub Exploit DB Packet Storm
780 7.8 重要
Local
マイクロソフト Microsoft Outlook
Microsoft Office
Microsoft Outlook のリモートでコードが実行される脆弱性 CWE-641
CWE-noinfo
CVE-2025-21361 2025-01-20 15:10 2025-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 27, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
261 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to privilege escalation and arbitrary code execution when running the impacted in… New - CVE-2024-9497 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
262 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead to privilege escalation and arbitrary code execution when running the impacted … New - CVE-2024-9496 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
263 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead to privilege escalation and arbitrary code execution when running the impacted i… New - CVE-2024-9495 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
264 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  CP210 VCP Win 2k installer can lead to privilege escalation and arbitrary code execution when running the impacted … New - CVE-2024-9494 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
265 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privilege escalation and arbitrary code execution when running the impacted installer. New - CVE-2024-9493 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
266 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to privilege escalation and arbitrary code execution when running the impacted ins… New - CVE-2024-9492 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
267 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted instal… New - CVE-2024-9491 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
268 - - - DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to privilege escalation and arbitrary code execution when running the impacted inst… New - CVE-2024-9490 2025-01-25 00:15 2025-01-25 Show GitHub Exploit DB Packet Storm
269 - - - An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_process_pmt in media_tools/mpegts.c:2163 that can cause a denial of service (DOS… New - CVE-2024-57184 2025-01-25 00:15 2025-01-24 Show GitHub Exploit DB Packet Storm
270 - - - GPAC MP4box 2.1-DEV-rev574-g9d5bb184b contains a buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c, check needed for num_exp_tile_columns New - CVE-2022-47090 2025-01-25 00:15 2025-01-24 Show GitHub Exploit DB Packet Storm