2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-19952MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Rendering Engine in jbt Markdown Editor thru commit 2252418c27dffbb35147acd8...
CVE-2020-26082MEDIUM5.3A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could...
CVE-2020-26065MEDIUM6.5A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem...
CVE-2020-20808MEDIUM6.1Cross Site Scripting vulnerability in Qibosoft qibosoft v.7 and before allows a remote attacker to execute arbitrary cod...
CVE-2020-36763MEDIUM5.4Cross Site Scripting (XSS) vulnerability in DuxCMS 2.1 allows remote attackers to run arbitrary code via the content, ti...
CVE-2020-21881MEDIUM6.5Cross Site Request Forgery (CSRF) vulnerability in admin.php in DuxCMS 2.1 allows remote attackers to modtify applicatio...
CVE-2020-4868MEDIUM5.3IBM TRIRIGA 3.0, 4.0, and 4.4 could allow a remote attacker to obtain sensitive information when a detailed technical er...
CVE-2020-35698MEDIUM6.1Thinkific Thinkific Online Course Creation Platform 1.0 is affected by: Cross Site Scripting (XSS). The impact is: execu...
CVE-2020-24275MEDIUM6.5A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying...
CVE-2020-23911MEDIUM5.5An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logge...
CVE-2020-23910MEDIUM5.5Stack-based buffer overflow vulnerability in asn1c through v0.9.28 via function genhash_get in genhash.c.
CVE-2020-36761MEDIUM4.3The Top 10 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.10.4. Th...
CVE-2020-36760MEDIUM4.3The Ocean Extra plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.5...
CVE-2020-36757MEDIUM4.3The WP Hotel Booking plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2020-36756MEDIUM4.3The 10WebAnalytics plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1....
CVE-2020-36752MEDIUM4.3The Coming Soon & Maintenance Mode Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up ...
CVE-2020-36750MEDIUM4.3The EWWW Image Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi...
CVE-2020-20118MEDIUM5.5Buffer Overflow vulnerability in Avast AntiVirus before v.19.7 allows a local attacker to cause a denial of service via ...
CVE-2020-8934MEDIUM4.3The Site Kit by Google plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and inc...
CVE-2020-23452MEDIUM6.1A cross-site scripting (XSS) vulnerability in Selenium Grid v3.141.59 allows attackers to execute arbitrary web scripts ...
CVE-2020-22152MEDIUM5.4Cross Site Scripting vulnerability in daylight studio FUEL- CMS v.1.4.6 allows a remote attacker to execute arbitrary co...
CVE-2020-36749MEDIUM4.3The Easy Testimonials plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,...
CVE-2020-36748MEDIUM4.3The Dokan plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0.8. This...
CVE-2020-36747MEDIUM4.3The Lightweight Sidebar Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and ...
CVE-2020-36746MEDIUM4.3The Menu Swapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1....

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now