2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9869HIGH7.5A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. A ...
CVE-2020-9863HIGH7.8A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13...
CVE-2020-9854HIGH7.8A logic issue was addressed with improved validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10...
CVE-2020-9853HIGH7.8A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. A malic...
CVE-2020-9828HIGH7.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A rem...
CVE-2020-9796HIGH7A race condition was addressed with improved state handling. This issue is fixed in macOS Catalina 10.15.5. An applicati...
CVE-2020-9779HIGH7.1An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A loc...
CVE-2020-9771HIGH7.1This issue was addressed with a new entitlement. This issue is fixed in macOS Catalina 10.15.4. A user may gain access t...
CVE-2020-3915HIGH7.8A path handling issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. A malicious...
CVE-2020-3898HIGH7.8A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. An appl...
CVE-2020-27155HIGH7.5An issue was discovered in Octopus Deploy through 2020.4.4. If enabled, the websocket endpoint may allow an untrusted te...
CVE-2020-26649HIGH8.1AtomXCMS 2.0 is affected by Incorrect Access Control via admin/dump.php
CVE-2020-24033HIGH8.8An issue was discovered in fs.com S3900 24T4S 1.7.0 and earlier. The form does not have an authentication or token authe...
CVE-2020-27638HIGH7.5receive.c in fastd before v21 allows denial of service (assertion failure) when receiving packets with an invalid type c...
CVE-2020-17355HIGH7.5Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attack...
CVE-2020-24425HIGH7.8Dreamweaver version 20.2 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead ...
CVE-2020-24424HIGH7.8Adobe Premiere Pro version 14.4 (and earlier) is affected by an uncontrolled search path element that could result in ar...
CVE-2020-24423HIGH7.8Adobe Media Encoder version 14.4 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that...
CVE-2020-24420HIGH7.8Adobe Photoshop for Windows version 21.2.1 (and earlier) is affected by an uncontrolled search path element vulnerabilit...
CVE-2020-24419HIGH7.8Adobe After Effects version 17.1.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability th...
CVE-2020-24418HIGH7.8Adobe After Effects version 17.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a craft...
CVE-2020-15266HIGH7.5In Tensorflow before version 2.4.0, when the `boxes` argument of `tf.image.crop_and_resize` has a very large value, the ...
CVE-2020-15265HIGH7.5In Tensorflow before version 2.4.0, an attacker can pass an invalid `axis` value to `tf.quantization.quantize_and_dequan...
CVE-2020-9750HIGH7.8Adobe Animate version 20.5 (and earlier) is affected by an out-of-bounds read vulnerability, which could result in arbit...
CVE-2020-9749HIGH7.8Adobe Animate version 20.5 (and earlier) is affected by an out-of-bounds read vulnerability that could result in arbitra...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now