Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230141 7.5 危険 pl-php - pL-PHP の admin.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2008 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
230142 10 危険 stephen craton - Stephen Craton Chatness の admin/options.php における classes/vars.php などの設定ファイルを読まれる脆弱性 - CVE-2007-2147 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230143 7.5 危険 shoutpro - ShoutPro の shoutbox.php における shouts.php へ任意の PHP コードを挿入される脆弱性 - CVE-2007-2141 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
230144 7.5 危険 rha7 downloads - XOOPS 用の rha7downloads モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2107 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230145 6.8 警告 wabbit - Wabbit PHP Gallery の showpic.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2098 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230146 7.5 危険 tsdisplay4xoops - TSD4XOOPS の blocks/tsdisplay4xoops_block2.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2091 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230147 6.8 警告 tumusika evolution - TuMusika Evolution の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2090 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
230148 7.5 危険 pl-php - pL-PHP の admin.php における認証を回避される脆弱性 - CVE-2007-2007 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
230149 7.5 危険 pl-php - pL-PHP の login.php における SQL インジェクションの脆弱性 - CVE-2007-2006 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
230150 7.5 危険 raphael limbach - Crea-Book の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-2000 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200151 8.8 HIGH
Network
apple itunes
iphone_os
tvos
watchos
safari
ipad_os
icloud
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, watchOS 6.2, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Win… CWE-787
 Out-of-bounds Write
CVE-2020-3895 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200152 3.1 LOW
Network
apple icloud
itunes
iphone_os
tvos
safari
ipad_os
A race condition was addressed with additional validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for W… CWE-362
Race Condition
CVE-2020-3894 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200153 7.8 HIGH
Local
apple mac_os_x A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A malicious application may be able to execute arbitrary code with kernel privil… CWE-20
CWE-787
 Improper Input Validation 
 Out-of-bounds Write
CVE-2020-3893 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200154 7.8 HIGH
Local
apple mac_os_x A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A malicious application may be able to execute arbitrary code with kernel privil… CWE-20
CWE-787
 Improper Input Validation 
 Out-of-bounds Write
CVE-2020-3892 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200155 2.4 LOW
Physics
apple iphone_os
watchos
ipad_os
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4, watchOS 6.2. A person with physical access to a locked iOS device may be able to respond t… NVD-CWE-noinfo
CVE-2020-3891 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200156 5.3 MEDIUM
Network
apple iphone_os
ipad_os
The issue was addressed with improved deletion. This issue is fixed in iOS 13.4 and iPadOS 13.4. Deleted messages groups may still be suggested as an autocompletion. NVD-CWE-noinfo
CVE-2020-3890 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200157 5.5 MEDIUM
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.4. A local user may be able to read arbitrary files. NVD-CWE-noinfo
CVE-2020-3889 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200158 4.3 MEDIUM
Network
apple iphone_os
ipad_os
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4. A maliciously crafted page may interfere with other web contexts. NVD-CWE-noinfo
CVE-2020-3888 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200159 4.3 MEDIUM
Network
apple itunes
iphone_os
tvos
safari
ipad_os
icloud
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Wind… NVD-CWE-Other
CVE-2020-3887 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm
200160 4.3 MEDIUM
Network
apple itunes
iphone_os
tvos
safari
ipad_os
icloud
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Wind… CWE-670
 Always-Incorrect Control Flow Implementation
CVE-2020-3885 2024-11-21 14:31 2020-04-2 Show GitHub Exploit DB Packet Storm