2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-27692HIGH8.8The Relish (Verve Connect) VH510 device with firmware before 1.0.1.6L0516 contains multiple CSRF vulnerabilities within ...
CVE-2020-7129HIGH7.2A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3...
CVE-2020-8037HIGH7.5The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
CVE-2020-8036HIGH7.5The tok2strbuf() function in tcpdump 4.10.0-PRE-GIT was used by the SOME/IP dissector in an unsafe way.
CVE-2020-22278HIGH8.8phpMyAdmin through 5.0.2 allows CSV injection via Export Section. NOTE: the vendor disputes this because "the CSV file i...
CVE-2020-22277HIGH8Import and export users and customers WordPress Plugin through 1.15.5.11 allows CSV injection via a customer's profile.
CVE-2020-22275HIGH8.8Easy Registration Forms (ER Forms) Wordpress Plugin 2.0.6 allows an attacker to submit an entry with malicious CSV comma...
CVE-2020-26211HIGH8.7In BookStack before version 0.30.4, a user with permissions to edit a page could insert JavaScript code through the use ...
CVE-2020-26210HIGH8.7In BookStack before version 0.30.4, a user with permissions to edit a page could add an attached link which would execut...
CVE-2020-16009HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially expl...
CVE-2020-16008HIGH8.8Stack buffer overflow in WebRTC in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit...
CVE-2020-16007HIGH7.8Insufficient data validation in installer in Google Chrome prior to 86.0.4240.183 allowed a local attacker to potentiall...
CVE-2020-16006HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially expl...
CVE-2020-16005HIGH8.8Insufficient policy enforcement in ANGLE in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentiall...
CVE-2020-16004HIGH8.8Use after free in user interface in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploi...
CVE-2020-16003HIGH8.8Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap...
CVE-2020-16002HIGH8.8Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap c...
CVE-2020-16001HIGH8.8Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap co...
CVE-2020-16000HIGH8.8Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially e...
CVE-2020-15998HIGH8.8Use after free in USB in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer ...
CVE-2020-15997HIGH8.8Use after free in Mojo in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer...
CVE-2020-15996HIGH8.8Use after free in passwords in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the ren...
CVE-2020-15995HIGH8.8Out of bounds write in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap c...
CVE-2020-15994HIGH8.8Use after free in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corrup...
CVE-2020-15992HIGH8.8Insufficient policy enforcement in networking in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had c...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now