Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
941 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Office のセキュリティ機能のバイパスの脆弱性 CWE-693
CWE-noinfo
CVE-2025-21346 2025-01-22 18:14 2025-01-14 Show GitHub Exploit DB Packet Storm
942 9.8 緊急
Network
The Biosig Project
Fedora Project
libbiosig
Fedora
The Biosig Project の libbiosig 等複数ベンダの製品における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2024-21795 2025-01-22 18:12 2024-02-20 Show GitHub Exploit DB Packet Storm
943 7.5 重要
Network
マイクロソフト Microsoft Windows 11 Windows Web Threat Defense ユーザー サービスの情報漏えいの脆弱性 CWE-269
CWE-noinfo
CVE-2025-21343 2025-01-22 18:11 2025-01-14 Show GitHub Exploit DB Packet Storm
944 8.8 重要
Network
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows 10
Microsoft Windows Server&…
Windows テレフォニー サービスのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21339 2025-01-22 18:06 2025-01-14 Show GitHub Exploit DB Packet Storm
945 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-57896 2025-01-22 18:03 2024-12-6 Show GitHub Exploit DB Packet Storm
946 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-57892 2025-01-22 18:00 2024-12-30 Show GitHub Exploit DB Packet Storm
947 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2024-57841 2025-01-22 17:57 2024-12-23 Show GitHub Exploit DB Packet Storm
948 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2024-57802 2025-01-22 17:54 2024-12-23 Show GitHub Exploit DB Packet Storm
949 8.8 重要
Network
フォーティネット FortiOS フォーティネットの FortiOS における境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2020-12820 2025-01-22 17:44 2020-09-24 Show GitHub Exploit DB Packet Storm
950 6.5 警告
Local
フォーティネット FortiWLC フォーティネットの FortiWLC における初期化されていないポインタのアクセスに関する脆弱性 CWE-824
初期化されていないポインタのアクセス
CVE-2021-26093 2025-01-22 17:44 2021-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1321 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxim Glazunov XML for Avito allows Reflected XSS. This issue affects XML for Avito: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-24646 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1322 - - - Missing Authorization vulnerability in Amento Tech Pvt ltd WPGuppy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WPGuppy: from n/a through 1.1.0. CWE-862
 Missing Authorization
CVE-2025-24643 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1323 - - - Missing Authorization vulnerability in theme funda Setup Default Featured Image allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Setup Default Featured Imag… CWE-862
 Missing Authorization
CVE-2025-24642 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1324 - - - Insertion of Sensitive Information Into Sent Data vulnerability in GREYS Korea for WooCommerce allows Retrieve Embedded Sensitive Data. This issue affects Korea for WooCommerce: from n/a through 1.1.… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2025-24639 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1325 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PhiloPress BP Email Assign Templates allows Reflected XSS. This issue affects BP Email Assign Tem… CWE-79
Cross-site Scripting
CVE-2025-24631 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1326 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MantraBrain Sikshya LMS allows Reflected XSS. This issue affects Sikshya LMS: from n/a through 0.… CWE-79
Cross-site Scripting
CVE-2025-24630 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1327 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPGear Import Excel to Gravity Forms allows Reflected XSS. This issue affects Import Excel to Gra… CWE-79
Cross-site Scripting
CVE-2025-24629 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1328 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound AIO Shortcodes allows Stored XSS. This issue affects AIO Shortcodes: from n/a through 1.… CWE-79
Cross-site Scripting
CVE-2025-24620 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1329 - - - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in realmag777 WOLF allows Path Traversal. This issue affects WOLF: from n/a through 1.0.8.5. CWE-22
Path Traversal
CVE-2025-24605 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1330 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fatcat Apps Landing Page Cat allows Reflected XSS. This issue affects Landing Page Cat: from n/a … CWE-79
Cross-site Scripting
CVE-2025-24576 2025-02-4 00:15 2025-02-4 Show GitHub Exploit DB Packet Storm