2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-15180CRITICAL9A flaw was found in the mysql-wsrep component of mariadb. Lack of input sanitization in `wsrep_sst_method` allows for co...
CVE-2020-14387HIGH7.4A flaw was found in rsync in versions since 3.2.0pre1. Rsync improperly validates certificate with host mismatch vulnera...
CVE-2020-14329LOW3.3A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /...
CVE-2020-14328LOW3.3A flaw was found in Ansible Tower in versions before 3.7.2. A Server Side Request Forgery flaw can be abused by supplyin...
CVE-2020-14327MEDIUM5.5A Server-side request forgery (SSRF) flaw was found in Ansible Tower in versions before 3.6.5 and before 3.7.2. Function...
CVE-2020-14301MEDIUM6.5An information disclosure vulnerability was found in libvirt in versions before 6.3.0. HTTP cookies used to access netwo...
CVE-2020-22034HIGH8.8A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_floodfill.c, which might lead to memory c...
CVE-2020-22033MEDIUM6.5A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which...
CVE-2020-22032HIGH8.8A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_edgedetect.c in gaussian_blur, which migh...
CVE-2020-22027HIGH8.8A heap-based Buffer Overflow vulnerability exits in FFmpeg 4.2 in deflate16 at libavfilter/vf_neighbor.c, which might le...
CVE-2020-22025HIGH8.8A heap-based Buffer Overflow vulnerability exists in gaussian_blur at libavfilter/vf_edgedetect.c, which might lead to m...
CVE-2020-22023HIGH8.8A heap-based Buffer Overflow vulnerabililty exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_bitplanenoise.c, whic...
CVE-2020-22022HIGH8.8A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_fieldorder.c, which mi...
CVE-2020-22017HIGH8.8A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at ff_fill_rectangle in libavfilter/drawutils.c, which m...
CVE-2020-22016HIGH8.8A heap-based Buffer Overflow vulnerability in FFmpeg 4.2 at libavcodec/get_bits.h when writing .mov files, which might l...
CVE-2020-12403CRITICAL9.1A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chac...
CVE-2020-10774MEDIUM5.5A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when rea...
CVE-2020-10729MEDIUM5.5A flaw was found in the use of insufficiently random values in Ansible. Two random password lookups of the same length g...
CVE-2020-10716MEDIUM6.5A flaw was found in Red Hat Satellite's Job Invocation, where the "User Input" entry was not properly restricted to the ...
CVE-2020-10709HIGH7.1A security flaw was found in Ansible Tower when requesting an OAuth2 token with an OAuth2 application. Ansible Tower use...
CVE-2020-10701MEDIUM6.5A missing authorization flaw was found in the libvirt API responsible for changing the QEMU agent response timeout. This...
CVE-2020-10698LOW3.3A flaw was found in Ansible Tower when running jobs. This flaw allows an attacker to access the stdout of the executed j...
CVE-2020-10697MEDIUM4.4A flaw was found in Ansible Tower when running Openshift. Tower runs a memcached, which is accessed via TCP. An attacker...
CVE-2020-10688MEDIUM6.1A cross-site scripting (XSS) flaw was found in RESTEasy in versions before 3.11.1.Final and before 4.5.3.Final, where it...
CVE-2020-22031HIGH8.8A Heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_w3fdif.c in filter16_complex_low, whic...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now