2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-6950MEDIUM6.5Directory traversal in Eclipse Mojarra before 2.3.14 allows attackers to read arbitrary files via the loc parameter or c...
CVE-2020-27661MEDIUM6.5A divide-by-zero issue was found in dwc2_handle_packet in hw/usb/hcd-dwc2.c in the hcd-dwc2 USB host controller emulatio...
CVE-2020-24870HIGH8.8Libraw before 0.20.1 has a stack buffer overflow via LibRaw::identify_process_dng_fields in identify.cpp.
CVE-2020-22049MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the wtvfile_open_sector function in wtvde...
CVE-2020-22048MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_frame_pool_get function in framepo...
CVE-2020-22046MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the avpriv_float_dsp_allocl function in l...
CVE-2020-35514HIGH7An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found in OpenShift. This flaw allows an attacke...
CVE-2020-35510MEDIUM5.9A flaw was found in jboss-remoting in versions before 5.0.20.SP1-redhat-00001. A malicious attacker could cause threads ...
CVE-2020-35503MEDIUM6A NULL pointer dereference flaw was found in the megasas-gen2 SCSI host bus adapter emulation of QEMU in versions before...
CVE-2020-14388MEDIUM6.3A flaw was found in the Red Hat 3scale API Management Platform, where member permissions for an API's admin portal were ...
CVE-2020-14380HIGH7.5An account takeover flaw was found in Red Hat Satellite 6.7.2 onward. A potential attacker with proper authentication to...
CVE-2020-14371MEDIUM6.5A credential leak vulnerability was found in Red Hat Satellite. This flaw exposes the compute resources credentials thro...
CVE-2020-14340MEDIUM5.9A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles...
CVE-2020-14336MEDIUM6.5A flaw was found in the Restricted Security Context Constraints (SCC), where it allows pods to craft custom network pack...
CVE-2020-14335MEDIUM5.5A flaw was found in Red Hat Satellite, which allows a privileged attacker to read OMAPI secrets through the ISC DHCP of ...
CVE-2020-14326HIGH7.5A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, le...
CVE-2020-14317MEDIUM5.5It was found that the issue for security flaw CVE-2019-3805 appeared again in a further version of JBoss Enterprise Appl...
CVE-2020-10771HIGH7.1A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects ...
CVE-2020-6641MEDIUM4.3Two authorization bypass through user-controlled key vulnerabilities in the Fortinet FortiPresence 2.1.0 administration ...
CVE-2020-10743MEDIUM4.3It was discovered that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made i...
CVE-2020-10742MEDIUM6A flaw was found in the Linux kernel. An index buffer overflow during Direct IO write leading to the NFS client to crash...
CVE-2020-22044MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the url_open_dyn_buf_internal function in...
CVE-2020-22043MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak at the fifo_alloc_common function in libavut...
CVE-2020-22042MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak is affected by: memory leak in the link_filt...
CVE-2020-22041MEDIUM6.5A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_buffersrc_add_frame_flags function...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now