2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15211 | MEDIUM | 4.8 | 0.9% | Sep 25, 2020 | In TensorFlow Lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, saved models in the flatbuffer format use a do... |
| CVE-2020-15210 | MEDIUM | 6.5 | 0.7% | Sep 25, 2020 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, if a TFLite saved model uses the same tensor a... |
| CVE-2020-15209 | MEDIUM | 5.9 | 0.8% | Sep 25, 2020 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to hav... |
| CVE-2020-15204 | MEDIUM | 5.3 | 0.9% | Sep 25, 2020 | In eager mode, TensorFlow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1 does not set the session state. Hence, c... |
| CVE-2020-15201 | MEDIUM | 4.8 | 0.6% | Sep 25, 2020 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` implementation does not validate that the input argume... |
| CVE-2020-15200 | MEDIUM | 5.9 | 0.8% | Sep 25, 2020 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` implementation does not validate that the input argume... |
| CVE-2020-15199 | MEDIUM | 5.9 | 0.8% | Sep 25, 2020 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` does not validate that the input arguments form a vali... |
| CVE-2020-15198 | MEDIUM | 5.4 | 0.5% | Sep 25, 2020 | In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input argume... |
| CVE-2020-15197 | MEDIUM | 6.3 | 0.7% | Sep 25, 2020 | In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input argume... |
| CVE-2020-15194 | MEDIUM | 5.3 | 1.0% | Sep 25, 2020 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `SparseFillEmptyRowsGrad` implementation has in... |
| CVE-2020-15192 | MEDIUM | 4.3 | 0.7% | Sep 25, 2020 | In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes a list of strings to `dlpack.to_dlpack` there is a memor... |
| CVE-2020-15191 | MEDIUM | 5.3 | 0.7% | Sep 25, 2020 | In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes an invalid argument to `dlpack.to_dlpack` the expected v... |
| CVE-2020-15190 | MEDIUM | 5.3 | 0.9% | Sep 25, 2020 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `tf.raw_ops.Switch` operation takes as input a ... |
| CVE-2020-25148 | MEDIUM | 6.1 | 0.8% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25146 | MEDIUM | 6.1 | 0.8% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25142 | MEDIUM | 6.5 | 0.5% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable if any links and ... |
| CVE-2020-25141 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-16242 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow an attacker to tric... |
| CVE-2020-4727 | MEDIUM | 6.1 | 0.9% | Sep 25, 2020 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By per... |
| CVE-2020-4531 | MEDIUM | 5.3 | 1.4% | Sep 25, 2020 | IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a r... |
| CVE-2020-25140 | MEDIUM | 6.1 | 0.6% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25139 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25138 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25137 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
| CVE-2020-25135 | MEDIUM | 6.1 | 0.7% | Sep 25, 2020 | An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to Cross-Site Scr... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now