2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7867 | HIGH | 7.8 | 0.8% | Oct 27, 2021 | An improper input validation vulnerability in Helpu solution could allow a local attacker to arbitrary file creation and... |
| CVE-2020-22864 | MEDIUM | 6.1 | 0.8% | Oct 26, 2021 | A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers ... |
| CVE-2020-5669 | MEDIUM | 5.4 | 0.6% | Oct 26, 2021 | Cross-site scripting vulnerability in Movable Type Movable Type Premium 1.37 and earlier and Movable Type Premium Advanc... |
| CVE-2020-20908 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to ... |
| CVE-2020-7859 | — | — | — | Oct 25, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-14264 | LOW | 3.9 | 0.2% | Oct 25, 2021 | "HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron App... |
| CVE-2020-36502 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Swift File Transfer Mobile v1.1.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the devicenam... |
| CVE-2020-36501 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Multiple cross-site scripting (XSS) vulnerabilities in the Support module of SugarCRM v6.5.18 allows attackers to execut... |
| CVE-2020-36499 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a cross-site scripting (XSS) vulnerability in ... |
| CVE-2020-36498 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Macrob7 Macs Framework Content Management System - 1.14f contains a cross-site scripting (XSS) vulnerability in the acco... |
| CVE-2020-36497 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component makehtml... |
| CVE-2020-36496 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component sys_admi... |
| CVE-2020-36495 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man... |
| CVE-2020-36494 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component mychanne... |
| CVE-2020-36493 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component media_ma... |
| CVE-2020-36492 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component select_m... |
| CVE-2020-36491 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tags_mai... |
| CVE-2020-36490 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man... |
| CVE-2020-36489 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the dev... |
| CVE-2020-36488 | MEDIUM | 6.5 | 1.3% | Oct 22, 2021 | An issue in the FTP server of Sky File v2.1.0 allows attackers to perform directory traversal via `/null//` path command... |
| CVE-2020-36486 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Swift File Transfer Mobile v1.1.2 and below was discovered to contain a cross-site scripting (XSS) vulnerability via the... |
| CVE-2020-36485 | HIGH | 7.8 | 0.5% | Oct 22, 2021 | Portable Ltd Playable v9.18 was discovered to contain an arbitrary file upload vulnerability in the filename parameter o... |
| CVE-2020-28969 | HIGH | 7.8 | 0.6% | Oct 22, 2021 | Aplioxio PDF ShapingUp 5.0.0.139 contains a buffer overflow which allows attackers to cause a denial of service (DoS) vi... |
| CVE-2020-28968 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Draytek VigorAP 1000C contains a stored cross-site scripting (XSS) vulnerability in the RADIUS Setting - RADIUS Server C... |
| CVE-2020-28967 | HIGH | 8.8 | 8.9% | Oct 22, 2021 | FlashGet v1.9.6 was discovered to contain a buffer overflow in the 'current path directory' function. This vulnerability... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now