Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229911 7.5 危険 vu - VU Mass Mailer の redir.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6138 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
229912 4.3 警告 phpslideshow - PHPSlideShow の phpslideshow.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6135 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
229913 7.5 危険 PHPKIT - PHPKIT の pkinc/public/article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6134 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
229914 2.1 注意 レッドハット - scanbuttond の buttonpressed.sh における任意のファイルを上書きされる脆弱性 CWE-16
環境設定
CVE-2007-6131 2012-12-20 18:33 2007-11-14 Show GitHub Exploit DB Packet Storm
229915 7.5 危険 project alumni - project alumni における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6127 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
229916 4.3 警告 project alumni - project alumni におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6126 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
229917 7.5 危険 softbiz - Softbiz Freelancers Script の search_form.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6125 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
229918 4.3 警告 softbiz - Softbiz Freelancers Script の signin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6124 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
229919 6.8 警告 talkback - TalkBack における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-6105 2012-12-20 18:33 2007-11-23 Show GitHub Exploit DB Packet Storm
229920 2.6 注意 The phpMyAdmin Project - phpMyAdmin の libraries/auth/cookie.auth.lib.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6100 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214101 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
watchos
ipados
A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A local attacker may be able to elevate th… CWE-22
Path Traversal
CVE-2020-10010 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214102 5.5 MEDIUM
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A sandboxed process may be able to circumvent sandbox restrictions. NVD-CWE-noinfo
CVE-2020-10009 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214103 5.5 MEDIUM
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to determine kernel memory layout. NVD-CWE-noinfo
CVE-2020-10007 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214104 5.5 MEDIUM
Local
apple mac_os_x This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to access restricted files. NVD-CWE-Other
CVE-2020-10006 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214105 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
ipados
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2. Opening a maliciously crafted file may lead to unexpected applicatio… NVD-CWE-noinfo
CVE-2020-10004 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214106 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
watchos
ipados
An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 1… CWE-59
Link Following
CVE-2020-10003 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214107 5.5 MEDIUM
Local
apple mac_os_x
tvos
itunes
iphone_os
watchos
icloud
ipados
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Wi… NVD-CWE-noinfo
CVE-2020-10002 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
214108 7.3 HIGH
Local
acronis true_image Acronis True Image 2021 fails to properly set ACLs of the C:\ProgramData\Acronis directory. Because some privileged processes are executed from the C:\ProgramData\Acronis, an unprivileged user can ac… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-10140 2024-11-21 13:54 2020-10-21 Show GitHub Exploit DB Packet Storm
214109 7.8 HIGH
Local
acronis true_image Acronis True Image 2021 includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory within C:\jenkins_agent\. Acronis True Image contains a privileged service that uses this… CWE-665
 Improper Initialization
CVE-2020-10139 2024-11-21 13:54 2020-10-21 Show GitHub Exploit DB Packet Storm
214110 7.8 HIGH
Local
acronis cyber_protect
cyber_backup
Acronis Cyber Backup 12.5 and Cyber Protect 15 include an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory within C:\jenkins_agent\. Acronis Cyber Backup and Cyber Protect co… CWE-665
 Improper Initialization
CVE-2020-10138 2024-11-21 13:54 2020-10-21 Show GitHub Exploit DB Packet Storm