2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9907HIGH7.8A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6...
CVE-2020-9903HIGH7.5A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, Safari 13.1.2. ...
CVE-2020-9893HIGH8.8A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, t...
CVE-2020-9891HIGH7.8An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO...
CVE-2020-9890HIGH7.8An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO...
CVE-2020-9889HIGH7.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13....
CVE-2020-9888HIGH7.8An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macO...
CVE-2020-9884HIGH7.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13....
CVE-2020-9878HIGH7.8A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, ma...
CVE-2020-9870HIGH8.8A logic issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10...
CVE-2020-9865HIGH8.6A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6...
CVE-2020-9862HIGH7.8A command injection issue existed in Web Inspector. This issue was addressed with improved escaping. This issue is fixed...
CVE-2020-9799HIGH7.8An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.6. A mali...
CVE-2020-4636HIGH7.2IBM Resilient OnPrem 38.2 could allow a privileged user to inject malicious commands through Python3 scripting. IBM X-Fo...
CVE-2020-4254HIGH7.5IBM Security Guardium Big Data Intelligence 1.0 (SonarG) uses weaker than expected cryptographic algorithms that could a...
CVE-2020-15258HIGH8In Wire before 3.20.x, `shell.openExternal` was used without checking the URL. This vulnerability allows an attacker to ...
CVE-2020-15255HIGH7.3In Anuko Time Tracker before verion 1.19.23.5325, due to not properly filtered user input a CSV export of a report could...
CVE-2020-15252HIGH8.8In XWiki before version 12.5 and 11.10.6, any user with SCRIPT right (EDIT right before XWiki 7.4) can gain access to th...
CVE-2020-27178HIGH7.5Apereo CAS 5.3.x before 5.3.16, 6.x before 6.1.7.2, 6.2.x before 6.2.4, and 6.3.x before 6.3.0-RC4 mishandles secret key...
CVE-2020-3991HIGH7.1VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system acc...
CVE-2020-26682HIGH8.8In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow.
CVE-2020-15867HIGH7.2The git hook feature in Gogs 0.5.5 through 0.12.2 allows for authenticated remote code execution. There can be a privile...
CVE-2020-14144HIGH7.2The git hook feature in Gitea 1.1.0 through 1.12.5 might allow for authenticated remote code execution in customer envir...
CVE-2020-26893HIGH7.8An issue was discovered in ClamXAV 3 before 3.1.1. A malicious actor could use a properly signed copy of ClamXAV 2 (runn...
CVE-2020-25829HIGH7.5An issue has been found in PowerDNS Recursor before 4.1.18, 4.2.x before 4.2.5, and 4.3.x before 4.3.5. A remote attacke...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now