2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-24414HIGH7.8Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing...
CVE-2020-24413HIGH7.8Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing...
CVE-2020-24412HIGH7.8Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing...
CVE-2020-24411HIGH7.8Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds write vulnerability when handling crafted P...
CVE-2020-24410HIGH7.8Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF...
CVE-2020-24409HIGH7.8Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF...
CVE-2020-9417HIGH8.8The Transaction Insight reporting component of TIBCO Software Inc.'s TIBCO Foresight Archive and Retrieval System, TIBCO...
CVE-2020-15264HIGH7.8The Boxstarter installer before version 2.13.0 configures C:\ProgramData\Boxstarter to be in the system-wide PATH enviro...
CVE-2020-24765HIGH7.5InterMind iMind Server through 3.13.65 allows remote unauthenticated attackers to read the self-diagnostic archive via a...
CVE-2020-15931HIGH7.5Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challeng...
CVE-2020-3994HIGH7.4VMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability in the vCenter Serve...
CVE-2020-3982HIGH7.7VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Work...
CVE-2020-7749HIGH7.6This affects all versions of package osm-static-maps. User input given to the package is passed directly to a template w...
CVE-2020-7748HIGH8.1This affects the package @tsed/core before 5.65.7. This vulnerability relates to the deepExtend function which is used a...
CVE-2020-6085HIGH7.5An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Br...
CVE-2020-6084HIGH7.5An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Br...
CVE-2020-9263HIGH7.8HUAWEI Mate 30 versions earlier than 10.1.0.150(C00E136R5P3) and HUAWEI P30 version earlier than 10.1.0.160(C00E160R2P11...
CVE-2020-9113HIGH8HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module...
CVE-2020-9112HIGH7.8Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of priv...
CVE-2020-24388HIGH7.5An issue was discovered in the _send_secure_msg() function of yubihsm-shell through 2.0.2. The function does not validat...
CVE-2020-24387HIGH7.5An issue was discovered in the yh_create_session() function of yubihsm-shell through 2.0.2. The function does not explic...
CVE-2020-15822HIGH7.3In JetBrains YouTrack before 2020.2.10514, SSRF is possible because URL filtering can be escaped.
CVE-2020-7195HIGH8.8A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Man...
CVE-2020-7194HIGH8.8A perfaddormoddevicemonitor expression language injection remote code execution vulnerability was discovered in HPE Inte...
CVE-2020-7193HIGH8.8A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intellige...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now