Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227701 6.8 警告 request it - Request It の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2015 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227702 6.8 警告 simpcms - SimpCMS Light の filename.asp における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2009 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227703 7.5 危険 pl-php - pL-PHP の admin.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2008 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227704 10 危険 stephen craton - Stephen Craton Chatness の admin/options.php における classes/vars.php などの設定ファイルを読まれる脆弱性 - CVE-2007-2147 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
227705 7.5 危険 shoutpro - ShoutPro の shoutbox.php における shouts.php へ任意の PHP コードを挿入される脆弱性 - CVE-2007-2141 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
227706 7.5 危険 rha7 downloads - XOOPS 用の rha7downloads モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2107 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227707 6.8 警告 wabbit - Wabbit PHP Gallery の showpic.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2098 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227708 7.5 危険 tsdisplay4xoops - TSD4XOOPS の blocks/tsdisplay4xoops_block2.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2091 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227709 6.8 警告 tumusika evolution - TuMusika Evolution の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2090 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227710 7.5 危険 pl-php - pL-PHP の admin.php における認証を回避される脆弱性 - CVE-2007-2007 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211511 9.8 CRITICAL
Network
apple iphone_os
mac_os_x
watchos
tvos
This issue was addressed with improved entitlements. This issue is fixed in watchOS 6, tvOS 13, macOS Catalina 10.15, iOS 13. An application may be able to gain elevated privileges. NVD-CWE-noinfo
CVE-2019-8703 2024-11-21 13:50 2021-12-24 Show GitHub Exploit DB Packet Storm
211512 5.5 MEDIUM
Local
apple mac_os_x
tvos
iphone_os
This issue was addressed with a new entitlement. This issue is fixed in macOS Mojave 10.14.6, Security Update 2019-004 High Sierra, Security Update 2019-004 Sierra, iOS 12.4, tvOS 12.4. A local user … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2019-8702 2024-11-21 13:50 2021-12-24 Show GitHub Exploit DB Packet Storm
211513 9.8 CRITICAL
Network
apple mac_os_x CVE-2019-8643: Arun Sharma of VMWare This issue is fixed in macOS Mojave 10.14. Description: A logic issue was addressed with improved state management.. NVD-CWE-noinfo
CVE-2019-8643 2024-11-21 13:50 2021-12-24 Show GitHub Exploit DB Packet Storm
211514 8.8 HIGH
Adjacent
bluez
debian
bluez
debian_linux
A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48. There isn't any check on whether there is enough space in the destination buffer. The function simply appends all data… CWE-787
 Out-of-bounds Write
CVE-2019-8922 2024-11-21 13:50 2021-11-29 Show GitHub Exploit DB Packet Storm
211515 6.5 MEDIUM
Adjacent
bluez
debian
bluez
debian_linux
An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by the SDP implementation. By crafting a malicious CSTATE, it is possible to tric… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2019-8921 2024-11-21 13:50 2021-11-29 Show GitHub Exploit DB Packet Storm
211516 7.5 HIGH
Network
cmsmadesimple cms_made_simple An issue was discovered in CMS Made Simple 2.2.8. It is possible to achieve unauthenticated path traversal in the CGExtensions module (in the file action.setdefaulttemplate.php) with the m1_filename … CWE-22
Path Traversal
CVE-2019-9060 2024-11-21 13:50 2021-09-18 Show GitHub Exploit DB Packet Storm
211517 6.5 MEDIUM
Network
apple ipados
iphone_os
This issue was addressed by verifying host keys when connecting to a previously-known SSH server. This issue is fixed in iOS 13.1 and iPadOS 13.1. An attacker in a privileged network position may be … CWE-347
 Improper Verification of Cryptographic Signature
CVE-2019-8901 2024-11-21 13:50 2020-10-28 Show GitHub Exploit DB Packet Storm
211518 4.3 MEDIUM
Network
apple tvos
iphone_os
itunes
safari
ipados
An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS 13.3 and iPadOS 13.3, tvOS 13.3, Safari 13.… NVD-CWE-noinfo
CVE-2019-8898 2024-11-21 13:50 2020-10-28 Show GitHub Exploit DB Packet Storm
211519 5.3 MEDIUM
Network
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006. A user who shares their screen may n… NVD-CWE-noinfo
CVE-2019-8858 2024-11-21 13:50 2020-10-28 Show GitHub Exploit DB Packet Storm
211520 3.3 LOW
Local
apple iphone_os
ipados
The issue was addressed with improved validation when an iCloud Link is created. This issue is fixed in iOS 13.3 and iPadOS 13.3. Live Photo audio and video data may be shared via iCloud links even i… CWE-20
 Improper Input Validation 
CVE-2019-8857 2024-11-21 13:50 2020-10-28 Show GitHub Exploit DB Packet Storm