2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36449 | HIGH | 8.1 | 1.2% | Aug 8, 2021 | An issue was discovered in the kekbit crate before 0.3.4 for Rust. For ShmWriter<H>, Send is implemented without requiri... |
| CVE-2020-36448 | HIGH | 8.1 | 1.1% | Aug 8, 2021 | An issue was discovered in the cache crate through 2020-11-24 for Rust. There are unconditional implementations of Send ... |
| CVE-2020-36447 | HIGH | 8.1 | 1.1% | Aug 8, 2021 | An issue was discovered in the v9 crate through 2020-12-18 for Rust. There is an unconditional implementation of Sync fo... |
| CVE-2020-36446 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the signal-simple crate through 2020-11-15 for Rust. There are unconditional implementations ... |
| CVE-2020-36445 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the convec crate through 2020-11-24 for Rust. There are unconditional implementations of Send... |
| CVE-2020-36444 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the async-coap crate through 2020-12-08 for Rust. Send and Sync are implemented for ArcGuard<... |
| CVE-2020-36443 | CRITICAL | 9.8 | 1.2% | Aug 8, 2021 | An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust. An uninitialized buffer is passed to AsyncRe... |
| CVE-2020-36442 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the beef crate before 0.5.0 for Rust. beef::Cow has no Sync bound on its Send trait. |
| CVE-2020-36441 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the abox crate before 0.4.1 for Rust. It implements Send and Sync for AtomicBox<T> with no re... |
| CVE-2020-36440 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the libsbc crate before 0.1.5 for Rust. For Decoder<R>, it implements Send for any R: Read. |
| CVE-2020-36439 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the ticketed_lock crate before 0.3.0 for Rust. There are unconditional implementations of Sen... |
| CVE-2020-36438 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the tiny_future crate before 0.4.0 for Rust. Future<T> does not have bounds on its Send and S... |
| CVE-2020-36437 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the conqueue crate before 0.4.0 for Rust. There are unconditional implementations of Send and... |
| CVE-2020-36436 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the unicycle crate before 0.7.1 for Rust. PinSlab<T> and Unordered<T, S> do not have bounds o... |
| CVE-2020-36435 | HIGH | 8.1 | 0.8% | Aug 8, 2021 | An issue was discovered in the ruspiro-singleton crate before 0.4.1 for Rust. In Singleton, Send and Sync do not have bo... |
| CVE-2020-36434 | CRITICAL | 9.8 | 1.2% | Aug 8, 2021 | An issue was discovered in the sys-info crate before 0.8.0 for Rust. sys_info::disk_info calls can trigger a double free... |
| CVE-2020-36433 | HIGH | 7.5 | 0.9% | Aug 8, 2021 | An issue was discovered in the chunky crate through 2020-08-25 for Rust. The Chunk API does not honor an alignment requi... |
| CVE-2020-36432 | CRITICAL | 9.8 | 1.2% | Aug 8, 2021 | An issue was discovered in the alg_ds crate through 2020-08-25 for Rust. There is a drop of uninitialized memory in Matr... |
| CVE-2020-28088 | CRITICAL | 9.8 | 2.3% | Aug 6, 2021 | An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execut... |
| CVE-2020-28087 | HIGH | 7.5 | 1.6% | Aug 6, 2021 | A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sens... |
| CVE-2020-21358 | MEDIUM | 6.5 | 0.4% | Aug 6, 2021 | A cross site request forgery (CSRF) in Wage-CMS 1.5.x-dev allows attackers to arbitrarily add users. |
| CVE-2020-21357 | MEDIUM | 6.1 | 0.8% | Aug 6, 2021 | A stored cross site scripting (XSS) vulnerability in /admin.php?mod=user&act=addnew of PopojiCMS 1.2 allows attackers to... |
| CVE-2020-21356 | MEDIUM | 5.3 | 0.9% | Aug 6, 2021 | An information disclosure vulnerability in upload.php of PopojiCMS 1.2 leads to physical path disclosure of the host whe... |
| CVE-2020-21353 | MEDIUM | 5.4 | 0.5% | Aug 6, 2021 | A stored cross site scripting (XSS) vulnerability in /admin/snippets.php of GetSimple CMS 3.4.0a allows attackers to exe... |
| CVE-2020-18694 | HIGH | 8.8 | 0.9% | Aug 6, 2021 | Cross Site Request Forgery (CSRF) in IgnitedCMS v1.0 allows remote attackers to obtain sensitive information and gain pr... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now