2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9907 | HIGH | 7.8 | 3.7% | Oct 16, 2020 | A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6... |
| CVE-2020-9903 | HIGH | 7.5 | 0.5% | Oct 16, 2020 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, Safari 13.1.2. ... |
| CVE-2020-9893 | HIGH | 8.8 | 2.7% | Oct 16, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, t... |
| CVE-2020-9891 | HIGH | 7.8 | 1.2% | Oct 16, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO... |
| CVE-2020-9890 | HIGH | 7.8 | 1.2% | Oct 16, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO... |
| CVE-2020-9889 | HIGH | 7.8 | 1.7% | Oct 16, 2020 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.... |
| CVE-2020-9888 | HIGH | 7.8 | 1.2% | Oct 16, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO... |
| CVE-2020-9884 | HIGH | 7.8 | 1.0% | Oct 16, 2020 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.... |
| CVE-2020-9878 | HIGH | 7.8 | 1.3% | Oct 16, 2020 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, ma... |
| CVE-2020-9870 | HIGH | 8.8 | 2.0% | Oct 16, 2020 | A logic issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10... |
| CVE-2020-9865 | HIGH | 8.6 | 0.9% | Oct 16, 2020 | A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6... |
| CVE-2020-9862 | HIGH | 7.8 | 1.7% | Oct 16, 2020 | A command injection issue existed in Web Inspector. This issue was addressed with improved escaping. This issue is fixed... |
| CVE-2020-9799 | HIGH | 7.8 | 1.2% | Oct 16, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.6. A mali... |
| CVE-2020-4636 | HIGH | 7.2 | 1.1% | Oct 16, 2020 | IBM Resilient OnPrem 38.2 could allow a privileged user to inject malicious commands through Python3 scripting. IBM X-Fo... |
| CVE-2020-4254 | HIGH | 7.5 | 0.8% | Oct 16, 2020 | IBM Security Guardium Big Data Intelligence 1.0 (SonarG) uses weaker than expected cryptographic algorithms that could a... |
| CVE-2020-15258 | HIGH | 8 | 2.0% | Oct 16, 2020 | In Wire before 3.20.x, `shell.openExternal` was used without checking the URL. This vulnerability allows an attacker to ... |
| CVE-2020-15255 | HIGH | 7.3 | 3.5% | Oct 16, 2020 | In Anuko Time Tracker before verion 1.19.23.5325, due to not properly filtered user input a CSV export of a report could... |
| CVE-2020-15252 | HIGH | 8.8 | 3.2% | Oct 16, 2020 | In XWiki before version 12.5 and 11.10.6, any user with SCRIPT right (EDIT right before XWiki 7.4) can gain access to th... |
| CVE-2020-27178 | HIGH | 7.5 | 1.2% | Oct 16, 2020 | Apereo CAS 5.3.x before 5.3.16, 6.x before 6.1.7.2, 6.2.x before 6.2.4, and 6.3.x before 6.3.0-RC4 mishandles secret key... |
| CVE-2020-3991 | HIGH | 7.1 | 0.3% | Oct 16, 2020 | VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system acc... |
| CVE-2020-26682 | HIGH | 8.8 | 1.8% | Oct 16, 2020 | In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow. |
| CVE-2020-15867 | HIGH | 7.2 | 87.5% | Oct 16, 2020 | The git hook feature in Gogs 0.5.5 through 0.12.2 allows for authenticated remote code execution. There can be a privile... |
| CVE-2020-14144 | HIGH | 7.2 | 93.7% | Oct 16, 2020 | The git hook feature in Gitea 1.1.0 through 1.12.5 might allow for authenticated remote code execution in customer envir... |
| CVE-2020-26893 | HIGH | 7.8 | 0.2% | Oct 16, 2020 | An issue was discovered in ClamXAV 3 before 3.1.1. A malicious actor could use a properly signed copy of ClamXAV 2 (runn... |
| CVE-2020-25829 | HIGH | 7.5 | 6.5% | Oct 16, 2020 | An issue has been found in PowerDNS Recursor before 4.1.18, 4.2.x before 4.2.5, and 4.3.x before 4.3.5. A remote attacke... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now