2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-13794 | MEDIUM | 4.3 | 1.3% | Sep 30, 2020 | Harbor 1.9.* 1.10.* and 2.0.* allows Exposure of Sensitive Information to an Unauthorized Actor. |
| CVE-2020-13331 | MEDIUM | 5.4 | 0.7% | Sep 30, 2020 | An issue has been discovered in GitLab affecting versions prior to 12.10.13. GitLab was vulnerable to a stored XSS by in... |
| CVE-2020-13330 | MEDIUM | 5.4 | 0.6% | Sep 30, 2020 | An issue has been discovered in GitLab affecting versions prior to 12.10.13. GitLab was vulnerable to a stored XSS in im... |
| CVE-2020-13329 | MEDIUM | 6.5 | 0.6% | Sep 30, 2020 | An issue has been discovered in GitLab affecting versions from 12.6.2 prior to 12.10.13. GitLab was vulnerable to a stor... |
| CVE-2020-13328 | MEDIUM | 4.8 | 0.6% | Sep 30, 2020 | An issue has been discovered in GitLab affecting versions prior to 13.1.2, 13.0.8 and 12.10.13. GitLab was vulnerable to... |
| CVE-2020-13326 | MEDIUM | 4.3 | 0.7% | Sep 30, 2020 | A vulnerability was discovered in GitLab versions prior to 13.1. Under certain conditions the restriction for Github pro... |
| CVE-2020-13324 | MEDIUM | 6.5 | 1.0% | Sep 30, 2020 | A vulnerability was discovered in GitLab versions prior to 13.1. Under certain conditions the private activity of a user... |
| CVE-2020-13320 | MEDIUM | 6.5 | 1.0% | Sep 30, 2020 | An issue has been discovered in GitLab before version 12.10.13 that allowed a project member with limited permissions to... |
| CVE-2020-13319 | MEDIUM | 4.3 | 0.8% | Sep 30, 2020 | An issue has been discovered in GitLab affecting versions prior to 13.1.2, 13.0.8 and 12.10.13. Missing permission check... |
| CVE-2020-5132 | MEDIUM | 5.3 | 1.0% | Sep 30, 2020 | SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as d... |
| CVE-2020-15216 | MEDIUM | 6.5 | 0.9% | Sep 29, 2020 | In goxmldsig (XML Digital Signatures implemented in pure Go) before version 1.1.0, with a carefully crafted XML file, an... |
| CVE-2020-25775 | MEDIUM | 6.3 | 0.3% | Sep 29, 2020 | The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary fil... |
| CVE-2020-25774 | MEDIUM | 4.3 | 2.1% | Sep 29, 2020 | A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to trigger an out-of-b... |
| CVE-2020-25772 | MEDIUM | 5.5 | 1.3% | Sep 29, 2020 | An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl... |
| CVE-2020-25771 | MEDIUM | 5.5 | 1.3% | Sep 29, 2020 | An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl... |
| CVE-2020-25770 | MEDIUM | 5.5 | 1.3% | Sep 29, 2020 | An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl... |
| CVE-2020-24565 | MEDIUM | 5.5 | 1.3% | Sep 29, 2020 | An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl... |
| CVE-2020-24564 | MEDIUM | 5.5 | 1.3% | Sep 29, 2020 | An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl... |
| CVE-2020-26120 | MEDIUM | 6.1 | 1.0% | Sep 27, 2020 | XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex s... |
| CVE-2020-25828 | MEDIUM | 6.1 | 1.1% | Sep 27, 2020 | An issue was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. The non-jqueryMsg version o... |
| CVE-2020-25815 | MEDIUM | 6.1 | 1.1% | Sep 27, 2020 | An issue was discovered in MediaWiki 1.32.x through 1.34.x before 1.34.4. LogEventList::getFiltersDesc is insecurely usi... |
| CVE-2020-25814 | MEDIUM | 6.1 | 1.4% | Sep 27, 2020 | In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, XSS related to jQuery can occur. The attacker creat... |
| CVE-2020-25813 | MEDIUM | 5.3 | 1.3% | Sep 27, 2020 | In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, Special:UserRights exposes the existence of hidden ... |
| CVE-2020-25812 | MEDIUM | 6.1 | 1.1% | Sep 27, 2020 | An issue was discovered in MediaWiki 1.34.x before 1.34.4. On Special:Contributions, the NS filter uses unescaped messag... |
| CVE-2020-15213 | MEDIUM | 4 | 0.6% | Sep 25, 2020 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger a denial of service by causing ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now