2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-7867HIGH7.8An improper input validation vulnerability in Helpu solution could allow a local attacker to arbitrary file creation and...
CVE-2020-22864MEDIUM6.1A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers ...
CVE-2020-5669MEDIUM5.4Cross-site scripting vulnerability in Movable Type Movable Type Premium 1.37 and earlier and Movable Type Premium Advanc...
CVE-2020-20908MEDIUM5.4Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to ...
CVE-2020-7859Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-14264LOW3.9"HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron App...
CVE-2020-36502MEDIUM6.1Swift File Transfer Mobile v1.1.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the devicenam...
CVE-2020-36501MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Support module of SugarCRM v6.5.18 allows attackers to execut...
CVE-2020-36499MEDIUM5.4TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a cross-site scripting (XSS) vulnerability in ...
CVE-2020-36498MEDIUM5.4Macrob7 Macs Framework Content Management System - 1.14f contains a cross-site scripting (XSS) vulnerability in the acco...
CVE-2020-36497MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component makehtml...
CVE-2020-36496MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component sys_admi...
CVE-2020-36495MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man...
CVE-2020-36494MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component mychanne...
CVE-2020-36493MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component media_ma...
CVE-2020-36492MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component select_m...
CVE-2020-36491MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tags_mai...
CVE-2020-36490MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man...
CVE-2020-36489MEDIUM5.4Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the dev...
CVE-2020-36488MEDIUM6.5An issue in the FTP server of Sky File v2.1.0 allows attackers to perform directory traversal via `/null//` path command...
CVE-2020-36486MEDIUM6.1Swift File Transfer Mobile v1.1.2 and below was discovered to contain a cross-site scripting (XSS) vulnerability via the...
CVE-2020-36485HIGH7.8Portable Ltd Playable v9.18 was discovered to contain an arbitrary file upload vulnerability in the filename parameter o...
CVE-2020-28969HIGH7.8Aplioxio PDF ShapingUp 5.0.0.139 contains a buffer overflow which allows attackers to cause a denial of service (DoS) vi...
CVE-2020-28968MEDIUM5.4Draytek VigorAP 1000C contains a stored cross-site scripting (XSS) vulnerability in the RADIUS Setting - RADIUS Server C...
CVE-2020-28967HIGH8.8FlashGet v1.9.6 was discovered to contain a buffer overflow in the 'current path directory' function. This vulnerability...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now