Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
71 5.4 警告
Network
WPDeveloper essential blocks WPDeveloper の WordPress 用 essential blocks におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4891 2025-01-31 12:19 2024-05-18 Show GitHub Exploit DB Packet Storm
72 6.5 警告
Network
JetBrains YouTrack JetBrains の YouTrack におけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2024-54156 2025-01-31 12:19 2024-12-4 Show GitHub Exploit DB Packet Storm
73 4.3 警告
Network
IBM IBM DevOps Deploy
IBM UrbanCode Deploy
IBM の IBM DevOps Deploy および IBM UrbanCode Deploy におけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2024-22339 2025-01-31 12:14 2024-04-11 Show GitHub Exploit DB Packet Storm
74 7.2 重要
Network
PaperCut Software International Pty PaperCut MF
PaperCut NG
PaperCut Software International Pty の PaperCut MF および PaperCut NG におけるコードインジェクションの脆弱性 CWE-94
CWE-94
CVE-2023-39469 2025-01-31 11:51 2023-08-2 Show GitHub Exploit DB Packet Storm
75 5.4 警告
Network
Brainstorm Force ultimate addons for beaver builder Brainstorm Force の WordPress 用 ultimate addons for beaver builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2142 2025-01-31 11:51 2024-03-30 Show GitHub Exploit DB Packet Storm
76 5.4 警告
Network
Brainstorm Force Elementor Header & Footer Builder Brainstorm Force の WordPress 用 Elementor Header & Footer Builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2619 2025-01-31 11:51 2024-05-16 Show GitHub Exploit DB Packet Storm
77 5.4 警告
Network
codeless cowidgets elementor addons codeless の WordPress 用 cowidgets elementor addons におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4697 2025-01-31 11:51 2024-06-4 Show GitHub Exploit DB Packet Storm
78 6.1 警告
Network
Esri Portal for ArcGIS Esri の Portal for ArcGIS におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2024-8148 2025-01-31 11:51 2024-10-4 Show GitHub Exploit DB Packet Storm
79 6.7 警告
Local
Linux Foundation
Google
OpenWrt Project
RDK Management, LLC
yocto
rdkb
OpenWrt
Android
Linux Foundation の Yocto 等複数ベンダの製品における脆弱性 CWE-noinfo
情報不足
CVE-2024-20022 2025-01-31 11:51 2024-03-4 Show GitHub Exploit DB Packet Storm
80 6.1 警告
Network
Esri Portal for ArcGIS Esri の Portal for ArcGIS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-25705 2025-01-31 11:51 2024-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1341 4.4 MEDIUM
Local
samsung android Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find. NVD-CWE-noinfo
CVE-2025-20907 2025-02-12 22:49 2025-02-4 Show GitHub Exploit DB Packet Storm
1342 6.7 MEDIUM
Local
samsung android Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to read and write out-of-bounds memory. CWE-125
Out-of-bounds Read
CVE-2025-20905 2025-02-12 22:49 2025-02-4 Show GitHub Exploit DB Packet Storm
1343 6.7 MEDIUM
Local
samsung android Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to cause memory corruption. CWE-787
 Out-of-bounds Write
CVE-2025-20904 2025-02-12 22:48 2025-02-4 Show GitHub Exploit DB Packet Storm
1344 5.1 MEDIUM
Local
samsung android Improper access control in NotificationManager prior to SMR Jan-2025 Release 1 allows local attackers to change the configuration of notifications. NVD-CWE-Other
CVE-2025-20893 2025-02-12 22:48 2025-02-4 Show GitHub Exploit DB Packet Storm
1345 5.9 MEDIUM
Physics
samsung android Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this vulnerabili… NVD-CWE-noinfo
CVE-2025-20892 2025-02-12 22:47 2025-02-4 Show GitHub Exploit DB Packet Storm
1346 5.5 MEDIUM
Local
samsung android Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required fo… CWE-125
Out-of-bounds Read
CVE-2025-20891 2025-02-12 22:47 2025-02-4 Show GitHub Exploit DB Packet Storm
1347 7.8 HIGH
Local
samsung android Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggeri… CWE-787
 Out-of-bounds Write
CVE-2025-20890 2025-02-12 22:47 2025-02-4 Show GitHub Exploit DB Packet Storm
1348 5.5 MEDIUM
Local
samsung android Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for trigge… CWE-787
 Out-of-bounds Write
CVE-2025-20889 2025-02-12 22:46 2025-02-4 Show GitHub Exploit DB Packet Storm
1349 7.8 HIGH
Local
samsung android Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is require… CWE-787
 Out-of-bounds Write
CVE-2025-20888 2025-02-12 22:46 2025-02-4 Show GitHub Exploit DB Packet Storm
1350 5.5 MEDIUM
Local
samsung android Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this … CWE-125
Out-of-bounds Read
CVE-2025-20887 2025-02-12 22:46 2025-02-4 Show GitHub Exploit DB Packet Storm