2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36369MEDIUM5.5Stack overflow vulnerability in parse_statement_list Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Se...
CVE-2020-36368MEDIUM5.5Stack overflow vulnerability in parse_statement Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service...
CVE-2020-36367MEDIUM5.5Stack overflow vulnerability in parse_block Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (Do...
CVE-2020-36366MEDIUM5.5Stack overflow vulnerability in parse_value Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (Do...
CVE-2020-18395HIGH7.5A NULL-pointer deference issue was discovered in GNU_gama::set() in ellipsoid.h in Gama 2.04 which can lead to a denial ...
CVE-2020-18392MEDIUM5.5Stack overflow vulnerability in parse_array Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (Do...
CVE-2020-26642MEDIUM6.1A cross-site scripting (XSS) vulnerability has been discovered in the login page of SeaCMS version 11 which allows an at...
CVE-2020-26641HIGH8.8A Cross Site Request Forgery (CSRF) vulnerability was discovered in iCMS 7.0.16 which can allow an attacker to execute a...
CVE-2020-15782CRITICAL9.8A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Co...
CVE-2020-1729MEDIUM4.4A flaw was found in SmallRye's API through version 1.6.1. The API can allow other code running within the application se...
CVE-2020-1716HIGH8.8A flaw was found in the ceph-ansible playbook where it contained hardcoded passwords that were being used as default pas...
CVE-2020-35506MEDIUM6.7A use-after-free vulnerability was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0....
CVE-2020-35505MEDIUM4.4A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0...
CVE-2020-35504MEDIUM6A NULL pointer dereference flaw was found in the SCSI emulation support of QEMU in versions before 6.0.0. This flaw allo...
CVE-2020-27847CRITICAL9.8A vulnerability exists in the SAML connector of the github.com/dexidp/dex library used to process SAML Signature Validat...
CVE-2020-27826MEDIUM4.2A flaw was found in Keycloak before version 12.0.0 where it is possible to update the user's metadata attributes using A...
CVE-2020-25715MEDIUM6.1A flaw was found in pki-core 10.9.0. A specially crafted POST request can be used to reflect a DOM-based cross-site scri...
CVE-2020-25710HIGH7.5A flaw was found in OpenLDAP in versions before 2.4.56. This flaw allows an attacker who sends a malicious packet proces...
CVE-2020-15465Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15464Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15463Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15462Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15461Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15460Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-15459Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now