2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-24563HIGH7.8A vulnerability in Trend Micro Apex One may allow a local attacker to manipulate the process of the security agent unloa...
CVE-2020-24562HIGH7.8A vulnerability in Trend Micro OfficeScan XG SP1 on Microsoft Windows may allow an attacker to create a hard link to any...
CVE-2020-26121HIGH7.5An issue was discovered in the FileImporter extension for MediaWiki before 1.34.4. An attacker can import a file even wh...
CVE-2020-25869HIGH7.5An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. Handling of acto...
CVE-2020-25827HIGH7.5An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. F...
CVE-2020-26117HIGH8.1In rfb/CSecurityTLS.cxx and rfb/CSecurityTLS.java in TigerVNC before 1.11.0, viewers mishandle TLS certificate exception...
CVE-2020-26116HIGH7.2http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF inj...
CVE-2020-15214HIGH8.1In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger a write out bounds / segmentati...
CVE-2020-15212HIGH8.6In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger writes outside of bounds of hea...
CVE-2020-15206HIGH7.5In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, changing the TensorFlow's `SavedModel` protocol buf...
CVE-2020-15203HIGH7.5In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as...
CVE-2020-15195HIGH8.8In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the implementation of `SparseFillEmptyRowsGrad` use...
CVE-2020-15193HIGH7.1In Tensorflow before versions 2.2.1 and 2.3.1, the implementation of `dlpack.to_dlpack` can be made to use uninitialized...
CVE-2020-25149HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-25145HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-25144HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-25143HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to SQL Injection ...
CVE-2020-19455HIGH7.5SQL injection exists in the jdownloads 3.2.63 component for Joomla! via components/com_jdownloads/helpers/categories.php...
CVE-2020-25136HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-25134HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-25133HIGH8.8An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory trav...
CVE-2020-19451HIGH7.5SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, upd...
CVE-2020-19450HIGH7.5SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, get...
CVE-2020-5930HIGH7.5In BIG-IP 15.0.0-15.1.0.4, 14.1.0-14.1.2.7, 13.1.0-13.1.3.3, 12.1.0-12.1.5.2, and 11.6.1-11.6.5.2 and BIG-IQ 5.2.0-7.1.0...
CVE-2020-15369HIGH8.8Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfusca...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now