2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-24563 | HIGH | 7.8 | 0.5% | Sep 29, 2020 | A vulnerability in Trend Micro Apex One may allow a local attacker to manipulate the process of the security agent unloa... |
| CVE-2020-24562 | HIGH | 7.8 | 0.6% | Sep 29, 2020 | A vulnerability in Trend Micro OfficeScan XG SP1 on Microsoft Windows may allow an attacker to create a hard link to any... |
| CVE-2020-26121 | HIGH | 7.5 | 1.3% | Sep 27, 2020 | An issue was discovered in the FileImporter extension for MediaWiki before 1.34.4. An attacker can import a file even wh... |
| CVE-2020-25869 | HIGH | 7.5 | 1.4% | Sep 27, 2020 | An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. Handling of acto... |
| CVE-2020-25827 | HIGH | 7.5 | 1.8% | Sep 27, 2020 | An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. F... |
| CVE-2020-26117 | HIGH | 8.1 | 3.1% | Sep 27, 2020 | In rfb/CSecurityTLS.cxx and rfb/CSecurityTLS.java in TigerVNC before 1.11.0, viewers mishandle TLS certificate exception... |
| CVE-2020-26116 | HIGH | 7.2 | 6.4% | Sep 27, 2020 | http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF inj... |
| CVE-2020-15214 | HIGH | 8.1 | 0.6% | Sep 25, 2020 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger a write out bounds / segmentati... |
| CVE-2020-15212 | HIGH | 8.6 | 0.6% | Sep 25, 2020 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger writes outside of bounds of hea... |
| CVE-2020-15206 | HIGH | 7.5 | 0.9% | Sep 25, 2020 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, changing the TensorFlow's `SavedModel` protocol buf... |
| CVE-2020-15203 | HIGH | 7.5 | 1.0% | Sep 25, 2020 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as... |
| CVE-2020-15195 | HIGH | 8.8 | 0.9% | Sep 25, 2020 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the implementation of `SparseFillEmptyRowsGrad` use... |
| CVE-2020-15193 | HIGH | 7.1 | 0.7% | Sep 25, 2020 | In Tensorflow before versions 2.2.1 and 2.3.1, the implementation of `dlpack.to_dlpack` can be made to use uninitialized... |
| CVE-2020-25149 | HIGH | 8.8 | 3.2% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-25145 | HIGH | 8.8 | 3.2% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-25144 | HIGH | 8.8 | 3.2% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-25143 | HIGH | 8.8 | 1.2% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to SQL Injection ... |
| CVE-2020-19455 | HIGH | 7.5 | 1.1% | Sep 25, 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via components/com_jdownloads/helpers/categories.php... |
| CVE-2020-25136 | HIGH | 8.8 | 3.0% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-25134 | HIGH | 8.8 | 3.4% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-25133 | HIGH | 8.8 | 2.6% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav... |
| CVE-2020-19451 | HIGH | 7.5 | 1.1% | Sep 25, 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, upd... |
| CVE-2020-19450 | HIGH | 7.5 | 1.1% | Sep 25, 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, get... |
| CVE-2020-5930 | HIGH | 7.5 | 1.1% | Sep 25, 2020 | In BIG-IP 15.0.0-15.1.0.4, 14.1.0-14.1.2.7, 13.1.0-13.1.3.3, 12.1.0-12.1.5.2, and 11.6.1-11.6.5.2 and BIG-IQ 5.2.0-7.1.0... |
| CVE-2020-15369 | HIGH | 8.8 | 1.0% | Sep 25, 2020 | Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfusca... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now