2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9972 | HIGH | 7.8 | 1.4% | Dec 8, 2020 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. Pr... |
| CVE-2020-9966 | HIGH | 7.8 | 1.2% | Dec 8, 2020 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS... |
| CVE-2020-9965 | HIGH | 7.8 | 1.4% | Dec 8, 2020 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS... |
| CVE-2020-9954 | HIGH | 7.8 | 1.4% | Dec 8, 2020 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in watchOS 7.0, tvOS 14.0, macO... |
| CVE-2020-9950 | HIGH | 8.8 | 1.4% | Dec 8, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 7.0, tvOS 14.0, Saf... |
| CVE-2020-9949 | HIGH | 7.8 | 1.4% | Dec 8, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, watch... |
| CVE-2020-9947 | HIGH | 8.8 | 1.6% | Dec 8, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 7.0, iOS 14.0 and i... |
| CVE-2020-28946 | HIGH | 7.5 | 1.2% | Dec 8, 2020 | An improper webserver configuration on Plum IK-401 devices with firmware before 1.02 allows an attacker (with network ac... |
| CVE-2020-26233 | HIGH | 7.3 | 5.9% | Dec 8, 2020 | Git Credential Manager Core (GCM Core) is a secure Git credential helper built on .NET Core that runs on Windows and mac... |
| CVE-2020-10016 | HIGH | 7.8 | 1.3% | Dec 8, 2020 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iOS... |
| CVE-2020-10013 | HIGH | 7.8 | 1.3% | Dec 8, 2020 | A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.0, iOS 14.0 and iPadOS 14.0. ... |
| CVE-2020-10011 | HIGH | 7.8 | 1.2% | Dec 8, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 and iPadOS 14.2, macO... |
| CVE-2020-10010 | HIGH | 7.8 | 0.4% | Dec 8, 2020 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and ... |
| CVE-2020-10004 | HIGH | 7.8 | 1.1% | Dec 8, 2020 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iP... |
| CVE-2020-10003 | HIGH | 7.8 | 0.4% | Dec 8, 2020 | An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization... |
| CVE-2020-26254 | HIGH | 7.7 | 1.3% | Dec 8, 2020 | omniauth-apple is the OmniAuth strategy for "Sign In with Apple" (RubyGem omniauth-apple). In omniauth-apple before vers... |
| CVE-2020-29540 | HIGH | 7.5 | 1.2% | Dec 8, 2020 | API calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Syst... |
| CVE-2020-25692 | HIGH | 7.5 | 2.2% | Dec 8, 2020 | A NULL pointer dereference was found in OpenLDAP server and was fixed in openldap 2.4.55, during a request for renaming ... |
| CVE-2020-25630 | HIGH | 7.5 | 1.3% | Dec 8, 2020 | A vulnerability was found in Moodle where the decompressed size of zip files was not checked against available user quot... |
| CVE-2020-25629 | HIGH | 8.8 | 1.3% | Dec 8, 2020 | A vulnerability was found in Moodle where users with "Log in as" capability in a course context (typically, course manag... |
| CVE-2020-29599 | HIGH | 7.8 | 7.0% | Dec 7, 2020 | ImageMagick before 6.9.11-40 and 7.x before 7.0.10-40 mishandles the -authenticate option, which allows setting a passwo... |
| CVE-2020-26122 | HIGH | 7.2 | 1.2% | Dec 7, 2020 | Inspur NF5266M5 through 3.21.2 and other server M5 devices allow remote code execution via administrator privileges. The... |
| CVE-2020-27151 | HIGH | 8.8 | 2.0% | Dec 7, 2020 | An issue was discovered in Kata Containers through 1.11.3 and 2.x through 2.0-rc1. The runtime will execute binaries giv... |
| CVE-2020-9247 | HIGH | 7.8 | 0.8% | Dec 7, 2020 | There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain c... |
| CVE-2020-5798 | HIGH | 7.8 | 0.3% | Dec 7, 2020 | inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user fr... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now