2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-4617 | HIGH | 8.1 | 0.6% | Sep 22, 2020 | IBM Data Risk Manager (iDNA) 2.0.6 is vulnerable to cross-site request forgery which could allow an attacker to execute ... |
| CVE-2020-4614 | HIGH | 7.5 | 0.8% | Sep 22, 2020 | IBM Data Risk Manager (iDNA) 2.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to de... |
| CVE-2020-4613 | HIGH | 7.5 | 0.9% | Sep 22, 2020 | IBM Data Risk Manager (iDNA) 2.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to de... |
| CVE-2020-4611 | HIGH | 8.8 | 1.6% | Sep 22, 2020 | IBM Data Risk Manager (iDNA) 2.0.6 could allow an authenticated user to bypass security and execute actions reserved for... |
| CVE-2020-11855 | HIGH | 7.8 | 1.3% | Sep 22, 2020 | An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The... |
| CVE-2020-8887 | HIGH | 7.5 | 1.5% | Sep 22, 2020 | Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauth... |
| CVE-2020-7734 | HIGH | 8.2 | 1.3% | Sep 22, 2020 | All versions of package cabot are vulnerable to Cross-site Scripting (XSS) via the Endpoint column. |
| CVE-2020-6576 | HIGH | 8.8 | 1.6% | Sep 21, 2020 | Use after free in offscreen canvas in Google Chrome prior to 85.0.4183.102 allowed a remote attacker to potentially expl... |
| CVE-2020-6575 | HIGH | 8.3 | 1.4% | Sep 21, 2020 | Race in Mojo in Google Chrome prior to 85.0.4183.102 allowed a remote attacker who had compromised the renderer process ... |
| CVE-2020-6574 | HIGH | 7.8 | 0.4% | Sep 21, 2020 | Insufficient policy enforcement in installer in Google Chrome on OS X prior to 85.0.4183.102 allowed a local attacker to... |
| CVE-2020-6559 | HIGH | 8.8 | 2.3% | Sep 21, 2020 | Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially explo... |
| CVE-2020-6556 | HIGH | 8.8 | 3.3% | Sep 21, 2020 | Heap buffer overflow in SwiftShader in Google Chrome prior to 84.0.4147.135 allowed a remote attacker to potentially exp... |
| CVE-2020-6555 | HIGH | 7.6 | 2.2% | Sep 21, 2020 | Out of bounds read in WebGL in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to obtain potentially sens... |
| CVE-2020-6554 | HIGH | 8.6 | 0.6% | Sep 21, 2020 | Use after free in extensions in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially perform a ... |
| CVE-2020-6553 | HIGH | 8.8 | 1.5% | Sep 21, 2020 | Use after free in offline mode in Google Chrome on iOS prior to 84.0.4147.125 allowed a remote attacker to potentially e... |
| CVE-2020-6552 | HIGH | 8.8 | 1.5% | Sep 21, 2020 | Use after free in Blink in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6551 | HIGH | 8.8 | 29.3% | Sep 21, 2020 | Use after free in WebXR in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6550 | HIGH | 8.8 | 29.3% | Sep 21, 2020 | Use after free in IndexedDB in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit hea... |
| CVE-2020-6549 | HIGH | 8.8 | 29.3% | Sep 21, 2020 | Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6548 | HIGH | 8.8 | 2.6% | Sep 21, 2020 | Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.125 allowed a remote attacker who had compromised the r... |
| CVE-2020-6546 | HIGH | 7.8 | 0.2% | Sep 21, 2020 | Inappropriate implementation in installer in Google Chrome prior to 84.0.4147.125 allowed a local attacker to potentiall... |
| CVE-2020-6545 | HIGH | 8.8 | 1.4% | Sep 21, 2020 | Use after free in audio in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6544 | HIGH | 8.8 | 1.4% | Sep 21, 2020 | Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6543 | HIGH | 8.8 | 1.4% | Sep 21, 2020 | Use after free in task scheduling in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially explo... |
| CVE-2020-6542 | HIGH | 8.8 | 2.0% | Sep 21, 2020 | Use after free in ANGLE in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap co... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now