Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246491 7.5 危険 emedia office gmbh - CuteFlow の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1631 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246492 4.3 警告 emedia office gmbh - CuteFlow におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1630 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246493 3.5 注意 cds software consortium - CDS Invenio における任意のユーザの電子メール通知アラートを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1627 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246494 7.5 危険 eggblog - eggBlog における SQL インジェクションの脆弱性 CWE-20
CWE-89
CVE-2008-1626 2012-06-26 16:02 2008-03-28 Show GitHub Exploit DB Packet Storm
246495 6.8 警告 AVAST Software s.r.o. - avast! Home and Professional の aavmker4.sys における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1625 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246496 6.8 警告 geertsen holdings inc - GeeCarts における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1622 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246497 4.3 警告 geertsen holdings inc - GeeCarts におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1621 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246498 7.5 危険 2X Software - 2X ThinClientServer の 2X TFTP サービスにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1620 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
246499 7.5 危険 clever copy - Clever Copy の postview.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1608 2012-06-26 16:02 2008-04-1 Show GitHub Exploit DB Packet Storm
246500 6 警告 elastic path - EP におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1606 2012-06-26 16:02 2008-04-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
218671 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
watchos
ipados
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted au… CWE-787
 Out-of-bounds Write
CVE-2020-10017 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218672 7.8 HIGH
Local
apple tvos
iphone_os
watchos
ipados
mac_os_x
macos
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. An application may be able to ex… CWE-787
 Out-of-bounds Write
CVE-2020-10016 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218673 6.3 MEDIUM
Local
apple macos
mac_os_x
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to break out of its sa… CWE-22
Path Traversal
CVE-2020-10014 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218674 7.8 HIGH
Local
apple iphone_os
tvos
ipados
mac_os_x
A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges. NVD-CWE-noinfo
CVE-2020-10013 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218675 6.1 MEDIUM
Network
apple macos
mac_os_x
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted document may lead to a cross site scripting attack. CWE-79
Cross-site Scripting
CVE-2020-10012 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218676 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
ipados
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-… CWE-125
Out-of-bounds Read
CVE-2020-10011 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218677 7.8 HIGH
Local
apple mac_os_x
tvos
iphone_os
watchos
ipados
A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A local attacker may be able to elevate th… CWE-22
Path Traversal
CVE-2020-10010 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218678 5.5 MEDIUM
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A sandboxed process may be able to circumvent sandbox restrictions. NVD-CWE-noinfo
CVE-2020-10009 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218679 5.5 MEDIUM
Local
apple mac_os_x A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to determine kernel memory layout. NVD-CWE-noinfo
CVE-2020-10007 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm
218680 5.5 MEDIUM
Local
apple mac_os_x This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to access restricted files. NVD-CWE-Other
CVE-2020-10006 2024-11-21 13:54 2020-12-9 Show GitHub Exploit DB Packet Storm