2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-36744MEDIUM4.3The NotificationX plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8...
CVE-2020-36743MEDIUM4.3The Product Catalog Simple plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2020-36742MEDIUM4.3The Custom Field Template plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2020-36741MEDIUM4.3The MultiVendorX plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.5....
CVE-2020-36739MEDIUM4.3The Feed Them Social – Page, Post, Video, and Photo Galleries plugin for WordPress is vulnerable to Cross-Site Request F...
CVE-2020-36738MEDIUM4.3The Cool Timeline (Horizontal & Vertical Timeline) plugin for WordPress is vulnerable to Cross-Site Request Forgery in v...
CVE-2020-36737MEDIUM4.3The Import / Export Customizer Settings plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up ...
CVE-2020-36736MEDIUM4.3The WooCommerce Checkout & Funnel Builder by CartFlows plugin for WordPress is vulnerable to Cross-Site Request Forgery ...
CVE-2020-36735MEDIUM4.3The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting plugin for WordPress is...
CVE-2020-18414MEDIUM4.8Stored cross site scripting (XSS) vulnerability in Chaoji CMS v2.18 that allows attackers to execute arbitrary code via ...
CVE-2020-18409MEDIUM6.8Cross Site Request Forgery (CSRF) vulnerability was discovered in CatfishCMS 4.8.63 that would allow attackers to obtain...
CVE-2020-18404MEDIUM4.8An issue was discovered in espcms version P8.18101601. There is a cross site scripting (XSS) vulnerability that allows a...
CVE-2020-18416MEDIUM6.8An cross site request forgery (CSRF) vulnerability discovered in Jymusic v2.0.0.,that allows attackers to execute arbitr...
CVE-2020-18413MEDIUM4.8Stored cross site scripting (XSS) vulnerability in /index.php?admin-master-navmenu-add of Chaoji CMS v2.18 that allows a...
CVE-2020-18410MEDIUM4.8A stored cross site scripting (XSS) vulnerability in /index.php?admin-master-article-edit of Chaoji CMS v2.18 that allow...
CVE-2020-23065MEDIUM5.4Cross Site Scripting vulnerabiltiy in eZ Systems AS eZPublish Platform v.5.4 and eZ Publish Legacy v.5.4 allows a remote...
CVE-2020-21485MEDIUM6.1Cross Site Scripting vulnerability in Alluxio v.1.8.1 allows a remote attacker to executea arbitrary code via the path p...
CVE-2020-21268MEDIUM6.1Cross Site Scripting vulnerability in EasySoft ZenTao v.11.6.4 allows a remote attacker to execute arbitrary code via th...
CVE-2020-21246MEDIUM5.4Cross Site Scripting vulnerability in YiiCMS v.1.0 allows a remote attacker to execute arbitrary code via the news funct...
CVE-2020-21058MEDIUM6.1Cross Site Scripting vulnerability in Typora v.0.9.79 allows a remote attacker to execute arbitrary code via the mermaid...
CVE-2020-21052MEDIUM6.1Cross Site Scripting vulnerability in zrlog zrlog v.2.1.3 allows a remote attacker to execute arbitrary code via the nic...
CVE-2020-20725MEDIUM6.1Cross Site Scripting vulnerability in taogogo taoCMS v.2.5 beta5.1 allows remote attacker to execute arbitrary code via ...
CVE-2020-20697MEDIUM4.8Cross Site Scripting vulnerability in khodakhah NodCMS v.3.0 allows a remote attacker to execute arbitrary code and gain...
CVE-2020-20502MEDIUM6.5Cross Site Request Forgery found in yzCMS v.2.0 allows a remote attacker to execute arbitrary code via the token check f...
CVE-2020-20070MEDIUM6.1Cross Site Scripting vulnerability found in wkeyuan DWSurvey 1.0 allows a remote attacker to execute arbitrary code via ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now