Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230311 7.5 危険 vu - VU Case Manager の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6143 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
230312 4.3 警告 salims softhouse - ph03y3nk JAF CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6142 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
230313 4.3 警告 vbtube - vBTube の vBTube.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6141 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
230314 7.5 危険 vu - VU Mass Mailer の redir.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6138 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
230315 4.3 警告 phpslideshow - PHPSlideShow の phpslideshow.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6135 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
230316 7.5 危険 PHPKIT - PHPKIT の pkinc/public/article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6134 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
230317 2.1 注意 レッドハット - scanbuttond の buttonpressed.sh における任意のファイルを上書きされる脆弱性 CWE-16
環境設定
CVE-2007-6131 2012-12-20 18:33 2007-11-14 Show GitHub Exploit DB Packet Storm
230318 7.5 危険 project alumni - project alumni における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6127 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
230319 4.3 警告 project alumni - project alumni におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6126 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
230320 7.5 危険 softbiz - Softbiz Freelancers Script の search_form.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6125 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196891 5.4 MEDIUM
Network
apple safari A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. Processing a maliciously crafted URL may lead to arbitrary javascript code execu… NVD-CWE-Other
CVE-2020-9860 2024-11-21 14:41 2020-10-28 Show GitHub Exploit DB Packet Storm
196892 4.3 MEDIUM
Network
apple mac_os_x An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-… NVD-CWE-Other
CVE-2020-9857 2024-11-21 14:41 2020-10-28 Show GitHub Exploit DB Packet Storm
196893 3.3 LOW
Local
apple mac_os_x This issue was addressed with improved checks This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra. An application may be able to trigg… NVD-CWE-noinfo
CVE-2020-9786 2024-11-21 14:41 2020-10-28 Show GitHub Exploit DB Packet Storm
196894 7.5 HIGH
Network
apple mac_os_x A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 201… CWE-22
Path Traversal
CVE-2020-9782 2024-11-21 14:41 2020-10-28 Show GitHub Exploit DB Packet Storm
196895 7.5 HIGH
Network
apple mac_os_x An issue existed with Siri Suggestions access to encrypted data. The issue was fixed by limiting access to encrypted data. This issue is fixed in macOS Catalina 10.15.3, Security Update 2020-001 Moja… CWE-311
Missing Encryption of Sensitive Data
CVE-2020-9774 2024-11-21 14:41 2020-10-28 Show GitHub Exploit DB Packet Storm
196896 5.5 MEDIUM
Local
apple mac_os_x
watchos
An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, watchOS 6.2.8. A malicious application may disclose restricted memory. NVD-CWE-noinfo
CVE-2020-9997 2024-11-21 14:41 2020-10-23 Show GitHub Exploit DB Packet Storm
196897 7.1 HIGH
Local
apple mac_os_x
iphone_os
watchos
tvos
ipados
A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able … NVD-CWE-noinfo
CVE-2020-9994 2024-11-21 14:41 2020-10-23 Show GitHub Exploit DB Packet Storm
196898 7.8 HIGH
Local
apple mac_os_x A race condition was addressed with additional validation. This issue is fixed in macOS Catalina 10.15.6. A malicious application may be able to execute arbitrary code with kernel privileges. CWE-362
Race Condition
CVE-2020-9990 2024-11-21 14:41 2020-10-23 Show GitHub Exploit DB Packet Storm
196899 3.3 LOW
Local
apple mac_os_x A file access issue existed with certain home folder files. This was addressed with improved access restrictions. This issue is fixed in macOS Catalina 10.15.7. A malicious application may be able to… NVD-CWE-noinfo
CVE-2020-9986 2024-11-21 14:41 2020-10-23 Show GitHub Exploit DB Packet Storm
196900 7.8 HIGH
Local
apple mac_os_x
iphone_os
watchos
ipados
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file … CWE-120
Classic Buffer Overflow
CVE-2020-9985 2024-11-21 14:41 2020-10-23 Show GitHub Exploit DB Packet Storm