2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-3538HIGH8.1A vulnerability in a certain REST API endpoint of Cisco Data Center Network Manager (DCNM) Software could allow an ...
CVE-2020-27124HIGH8.6A vulnerability in the SSL/TLS handler of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthent...
CVE-2020-26074HIGH7.8A vulnerability in system file transfer functions of Cisco SD-WAN vManage Software could allow an authenticated, lo...
CVE-2020-26073HIGH7.5A vulnerability in the application data endpoints of Cisco SD-WAN vManage Software could allow an unauthenticated, ...
CVE-2020-26071HIGH8.4A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overw...
CVE-2020-25720HIGH7.5A vulnerability was found in Samba where a delegated administrator with permission to create objects in Active Directory...
CVE-2020-10370HIGH8.8Certain Cypress (and Broadcom) Wireless Combo chips such as CYW43455, when a 2021-01-26 Bluetooth firmware update is not...
CVE-2020-11926HIGH7.5An issue was discovered in Luvion Grand Elite 3 Connect through 2020-02-25. Clients can authenticate themselves to the d...
CVE-2020-11921HIGH8.8An issue was discovered in Lush 2 through 2020-02-25. Due to the lack of Bluetooth traffic encryption, it is possible to...
CVE-2020-11919HIGH8An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. There is no CSRF protection.
CVE-2020-26311HIGH7.5Useragent is a user agent parser for Node.js. All versions as of time of publication contain one or more regular express...
CVE-2020-26310HIGH8.7Validate.js provides a declarative way of validating javascript objects. All versions as of 30 November 2020 contain one...
CVE-2020-26309HIGH8.7Validate.js provides a declarative way of validating javascript objects. Versions 0.11.3 and prior contain one or more r...
CVE-2020-26308HIGH7.5Validate.js provides a declarative way of validating javascript objects. Versions 0.13.1 and prior contain one or more r...
CVE-2020-26307HIGH8.7HTML2Markdown is a Javascript implementation for converting HTML to Markdown text. All available versions contain one or...
CVE-2020-26306HIGH8.7Knwl.js is a Javascript library that parses through text for dates, times, phone numbers, emails, places, and more. Vers...
CVE-2020-26305HIGH7.5CommonRegexJS is a CommonRegex port for JavaScript. All available versions contain one or more regular expressions that ...
CVE-2020-26304HIGH7.5Foundation is a front-end framework. Versions 6.3.3 and prior contain one or more regular expressions that are vulnerabl...
CVE-2020-26303HIGH7.5insane is a whitelist-oriented HTML sanitizer. Versions 2.6.2 and prior contain one or more regular expressions that are...
CVE-2020-36842HIGH8.8The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to arbitrary file uploads due to a missing c...
CVE-2020-36839HIGH8.3The WP Lead Plus X plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 0....
CVE-2020-36838HIGH7.4The Facebook Chat Plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wp...
CVE-2020-36836HIGH8The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized arbitrary file deletion in versions up to, and i...
CVE-2020-36830HIGH7.5A vulnerability was found in nescalante urlregex up to 0.5.0 and classified as problematic. This issue affects some unkn...
CVE-2020-11847HIGH7.8SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. T...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now