2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-4617HIGH8.1IBM Data Risk Manager (iDNA) 2.0.6 is vulnerable to cross-site request forgery which could allow an attacker to execute ...
CVE-2020-4614HIGH7.5IBM Data Risk Manager (iDNA) 2.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to de...
CVE-2020-4613HIGH7.5IBM Data Risk Manager (iDNA) 2.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to de...
CVE-2020-4611HIGH8.8IBM Data Risk Manager (iDNA) 2.0.6 could allow an authenticated user to bypass security and execute actions reserved for...
CVE-2020-11855HIGH7.8An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The...
CVE-2020-8887HIGH7.5Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauth...
CVE-2020-7734HIGH8.2All versions of package cabot are vulnerable to Cross-site Scripting (XSS) via the Endpoint column.
CVE-2020-6576HIGH8.8Use after free in offscreen canvas in Google Chrome prior to 85.0.4183.102 allowed a remote attacker to potentially expl...
CVE-2020-6575HIGH8.3Race in Mojo in Google Chrome prior to 85.0.4183.102 allowed a remote attacker who had compromised the renderer process ...
CVE-2020-6574HIGH7.8Insufficient policy enforcement in installer in Google Chrome on OS X prior to 85.0.4183.102 allowed a local attacker to...
CVE-2020-6559HIGH8.8Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially explo...
CVE-2020-6556HIGH8.8Heap buffer overflow in SwiftShader in Google Chrome prior to 84.0.4147.135 allowed a remote attacker to potentially exp...
CVE-2020-6555HIGH7.6Out of bounds read in WebGL in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to obtain potentially sens...
CVE-2020-6554HIGH8.6Use after free in extensions in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially perform a ...
CVE-2020-6553HIGH8.8Use after free in offline mode in Google Chrome on iOS prior to 84.0.4147.125 allowed a remote attacker to potentially e...
CVE-2020-6552HIGH8.8Use after free in Blink in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6551HIGH8.8Use after free in WebXR in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6550HIGH8.8Use after free in IndexedDB in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit hea...
CVE-2020-6549HIGH8.8Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6548HIGH8.8Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.125 allowed a remote attacker who had compromised the r...
CVE-2020-6546HIGH7.8Inappropriate implementation in installer in Google Chrome prior to 84.0.4147.125 allowed a local attacker to potentiall...
CVE-2020-6545HIGH8.8Use after free in audio in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6544HIGH8.8Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6543HIGH8.8Use after free in task scheduling in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially explo...
CVE-2020-6542HIGH8.8Use after free in ANGLE in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now