2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0089 | HIGH | 7.8 | 0.1% | Sep 18, 2020 | In the audio server, there is a missing permission check. This could lead to local escalation of privilege regarding aud... |
| CVE-2020-15776 | HIGH | 8.8 | 2.0% | Sep 18, 2020 | An issue was discovered in Gradle Enterprise 2018.2 - 2020.2.4. The CSRF prevention token is stored in a request cookie ... |
| CVE-2020-15775 | HIGH | 7.5 | 1.2% | Sep 18, 2020 | An issue was discovered in Gradle Enterprise 2017.1 - 2020.2.4. The /usage page of Gradle Enterprise conveys high level ... |
| CVE-2020-15771 | HIGH | 7.5 | 1.0% | Sep 18, 2020 | An issue was discovered in Gradle Enterprise 2018.2 and Gradle Enterprise Build Cache Node 4.1. Cross-site transmission ... |
| CVE-2020-15768 | HIGH | 7.5 | 1.7% | Sep 18, 2020 | An issue was discovered in Gradle Enterprise 2017.3 - 2020.2.4 and Gradle Enterprise Build Cache Node 1.0 - 9.2. Unrestr... |
| CVE-2020-25751 | HIGH | 8.8 | 1.8% | Sep 18, 2020 | The paGO Commerce plugin 2.5.9.0 for Joomla! allows SQL Injection via the administrator/index.php?option=com_pago&view=c... |
| CVE-2020-25750 | HIGH | 7.5 | 1.1% | Sep 18, 2020 | An issue was discovered in DotPlant2 before 2020-09-14. In class Pay2PayPayment in payment/Pay2PayPayment.php, there is ... |
| CVE-2020-25744 | HIGH | 8.1 | 1.4% | Sep 18, 2020 | SaferVPN before 5.0.3.3 on Windows could allow low-privileged users to create or overwrite arbitrary files, which could ... |
| CVE-2020-25733 | HIGH | 7.5 | 2.1% | Sep 18, 2020 | webTareas through 2.1 allows upload of the dangerous .exe and .shtml file types. |
| CVE-2020-0406 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In libmpeg2dec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati... |
| CVE-2020-0375 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In Telephony, there is a possible permission bypass due to a missing permission check. This could lead to local escalati... |
| CVE-2020-0374 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In NFC, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local escalation of pri... |
| CVE-2020-0369 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In libavb, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of pr... |
| CVE-2020-0366 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In PackageInstaller, there is a possible permissions bypass due to a tapjacking vulnerability. This could lead to local ... |
| CVE-2020-0360 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In Notification Access Confirmation, there is a possible permissions bypass due to uninformed consent. This could lead t... |
| CVE-2020-0357 | HIGH | 7.8 | 0.1% | Sep 17, 2020 | In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to local escalation of pr... |
| CVE-2020-0346 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In Mediaserver, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation ... |
| CVE-2020-0345 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In DocumentsUI, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of p... |
| CVE-2020-0341 | HIGH | 7.8 | 0.1% | Sep 17, 2020 | In DisplayManager, there is a possible permission bypass due to a missing permission check. This could lead to local esc... |
| CVE-2020-0321 | HIGH | 8.8 | 0.7% | Sep 17, 2020 | In the mp3 extractor, there is a possible out of bounds write due to uninitialized data. This could lead to remote code ... |
| CVE-2020-0306 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservation. This could lead t... |
| CVE-2020-0303 | HIGH | 8.8 | 0.6% | Sep 17, 2020 | In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execu... |
| CVE-2020-0277 | HIGH | 7.8 | 0.1% | Sep 17, 2020 | In NetworkPolicyManagerService, there is a possible permissions bypass due to a missing permission check. This could lea... |
| CVE-2020-0275 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In MediaProvider, there is a possible way to access ContentResolver and MediaStore entries the app shouldn't have access... |
| CVE-2020-0267 | HIGH | 7.8 | 0.5% | Sep 17, 2020 | In WindowManager, there is a possible launch of an unexpected app due to a confused deputy. This could lead to local esc... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now