Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
781 7.5 重要
Network
F5 Networks BIG-IP Advanced Firewall Manager (AFM)
BIG-IP Analytics
BIG-IP Link Controller
BIG-IP Application Security Manager (ASM)
BIG-IP …
複数の F5 Networks 製品における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
CWE-770
CVE-2024-23979 2025-01-24 10:24 2024-02-14 Show GitHub Exploit DB Packet Storm
782 9.8 緊急
Network
PaperCut Software International Pty PaperCut MF
PaperCut NG
PaperCut Software International Pty の PaperCut MF および PaperCut NG における脆弱性 CWE-250
CWE-Other
CVE-2024-1222 2025-01-24 10:21 2024-03-14 Show GitHub Exploit DB Packet Storm
783 5.4 警告
Network
exclusiveaddons exclusive addons for elementor exclusiveaddons の WordPress 用 exclusive addons for elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1234 2025-01-24 10:21 2024-03-13 Show GitHub Exploit DB Packet Storm
784 5.3 警告
Network
Themeum Tutor LMS Themeum の WordPress 用 Tutor LMS における認証の欠如に関する脆弱性 CWE-284
CWE-862
CVE-2024-10393 2025-01-24 10:21 2024-11-21 Show GitHub Exploit DB Packet Storm
785 4.8 警告
Network
Pixelite events manager Pixelite の WordPress 用 events manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0614 2025-01-24 10:20 2024-03-13 Show GitHub Exploit DB Packet Storm
786 8.8 重要
Network
PluginUs.Net HUSKY - Products Filter for WooCommerce Professional PluginUs.Net の WordPress 用 HUSKY - Products Filter for WooCommerce Professional におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2023-50861 2025-01-24 10:19 2023-12-14 Show GitHub Exploit DB Packet Storm
787 5.5 警告
Local
Google Android Google の Android における脆弱性 CWE-noinfo
情報不足
CVE-2017-13322 2025-01-24 10:18 2017-08-23 Show GitHub Exploit DB Packet Storm
788 7.5 重要
Network
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2024-26003 2025-01-24 10:10 2024-03-12 Show GitHub Exploit DB Packet Storm
789 5 警告
Network
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品におけるコマンドインジェクションの脆弱性 CWE-20
CWE-77
CVE-2024-28135 2025-01-24 10:10 2024-05-14 Show GitHub Exploit DB Packet Storm
790 9.8 緊急
Network
ZyXEL NAS 326 ファームウェア
NAS 542 ファームウェア
ZyXEL の NAS 326 ファームウェアおよび NAS 542 ファームウェアにおける OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-29972 2025-01-24 10:10 2024-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1451 5.0 MEDIUM
Network
- - A vulnerability was found in GNU Binutils 2.43. It has been rated as critical. Affected by this issue is the function bfd_putl64 of the file bfd/libbfd.c of the component ld. The manipulation leads t… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-1179 2025-02-11 16:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1452 9.8 CRITICAL
Network
- - The WP Foodbakery plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.3. This is due to the plugin not properly restricting what user meta can be update… CWE-269
 Improper Privilege Management
CVE-2025-0180 2025-02-11 16:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1453 6.3 MEDIUM
Network
- - A vulnerability was found in dayrui XunRuiCMS 4.6.3. It has been classified as critical. Affected is the function import_add of the file dayrui/Fcms/Control/Admin/Linkage.php. The manipulation leads … CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2025-1177 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1454 5.0 MEDIUM
Network
- - A vulnerability was found in GNU Binutils 2.43 and classified as critical. This issue affects the function _bfd_elf_gc_mark_rsec of the file elflink.c of the component ld. The manipulation leads to h… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2025-1176 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1455 - - - A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file addtocart.php. The… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1172 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1456 - - - A vulnerability classified as problematic was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /Admin/Customer… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1171 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1457 - - - NetVision Information ISOinsight has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript code in the user's browser through phish… CWE-79
Cross-site Scripting
CVE-2025-1145 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1458 - - - School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view specific pages and obtain database information as well as plaintext administrat… CWE-497
 Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2025-1144 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1459 - - - Certain models of routers from Billion Electric has hard-coded embedded linux credentials, allowing attackers to log in through the SSH service using these credentials and obtain root privilege of th… CWE-798
 Use of Hard-coded Credentials
CVE-2025-1143 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1460 - - - A vulnerability classified as problematic has been found in code-projects Real Estate Property Management System 1.0. Affected is an unknown function of the file /Admin/Category.php. The manipulation… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1170 2025-02-11 15:15 2025-02-11 Show GitHub Exploit DB Packet Storm