2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-22040 | MEDIUM | 6.5 | 1.0% | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 idue to a memory leak in the v_frame_alloc function in frame.c. |
| CVE-2020-22039 | MEDIUM | 6.5 | 1.0% | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the inavi_add_ientry function. |
| CVE-2020-22038 | MEDIUM | 6.5 | 1.0% | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_v4l2_m2m_create_context function i... |
| CVE-2020-22037 | MEDIUM | 6.5 | 1.6% | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in avcodec_alloc_context3 at options.c. |
| CVE-2020-22036 | HIGH | 8.8 | 1.7% | Jun 1, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_intra at libavfilter/vf_bwdif.c, which might l... |
| CVE-2020-22035 | HIGH | 8.8 | 1.2% | Jun 1, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in get_block_row at libavfilter/vf_bm3d.c, which might l... |
| CVE-2020-27377 | MEDIUM | 4.8 | 0.5% | Jun 1, 2021 | A cross-site scripting (XSS) vulnerability was discovered in the Administrator panel on the 'Setting News' module on CMS... |
| CVE-2020-26693 | MEDIUM | 5.4 | 5.3% | Jun 1, 2021 | A stored cross-site scripting (XSS) vulnerability was discovered in pfSense 2.4.5-p1 which allows an authenticated attac... |
| CVE-2020-26670 | HIGH | 8.8 | 1.8% | Jun 1, 2021 | A vulnerability has been discovered in BigTree CMS 4.4.10 and earlier which allows an authenticated attacker to execute ... |
| CVE-2020-26669 | MEDIUM | 5.4 | 0.6% | Jun 1, 2021 | A stored cross-site scripting (XSS) vulnerability was discovered in BigTree CMS 4.4.10 and earlier which allows an authe... |
| CVE-2020-26668 | HIGH | 8.8 | 1.4% | Jun 1, 2021 | A SQL injection vulnerability was discovered in /core/feeds/custom.php in BigTree CMS 4.4.10 and earlier which allows an... |
| CVE-2020-17541 | HIGH | 8.8 | 2.7% | Jun 1, 2021 | Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a ... |
| CVE-2020-4561 | CRITICAL | 10 | 2.9% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 DQM API allows submitting of all control requests in unauthenticated sessions. This a... |
| CVE-2020-4520 | HIGH | 8.8 | 2.7% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to inject malicious HTML code that when viewed by the a... |
| CVE-2020-4354 | MEDIUM | 5.4 | 1.0% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit... |
| CVE-2020-4300 | HIGH | 8.2 | 4.0% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML da... |
| CVE-2020-27748 | MEDIUM | 6.5 | 1.4% | Jun 1, 2021 | A flaw was found in the xdg-email component of xdg-utils-1.1.0-rc1 and newer. When handling mailto: URIs, xdg-email allo... |
| CVE-2020-1920 | HIGH | 7.5 | 1.4% | Jun 1, 2021 | A regular expression denial of service (ReDoS) vulnerability in the validateBaseUrl function can cause the application t... |
| CVE-2020-10666 | CRITICAL | 9.8 | 2.2% | May 31, 2021 | The restapps (aka Rest Phone apps) module for Sangoma FreePBX and PBXact 13, 14, and 15 through 15.0.19.2 allows remote ... |
| CVE-2020-36375 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_equality Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service ... |
| CVE-2020-36374 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_comparison Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Servic... |
| CVE-2020-36373 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_shifts Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (D... |
| CVE-2020-36372 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_plus_minus Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Servic... |
| CVE-2020-36371 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_mul_div_rem Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Servi... |
| CVE-2020-36370 | MEDIUM | 5.5 | 0.8% | May 28, 2021 | Stack overflow vulnerability in parse_unary Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (Do... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now