2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-22030 | HIGH | 8.8 | 1.2% | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/af_afade.c in crossfade_samples_fltp, whi... |
| CVE-2020-22029 | HIGH | 8.8 | 1.5% | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_colorconstancy.c: in slice_get_derivat... |
| CVE-2020-18230 | MEDIUM | 4.8 | 1.0% | May 27, 2021 | Cross Site Scripting (XSS) in PHPMyWind v5.5 allows remote attackers to execute arbitrary code by injecting scripts into... |
| CVE-2020-18229 | MEDIUM | 4.8 | 0.9% | May 27, 2021 | Cross Site Scripting (XSS) in PHPMyWind v5.5 allows remote attackers to execute arbitrary code by injecting scripts into... |
| CVE-2020-27832 | CRITICAL | 9 | 0.9% | May 27, 2021 | A flaw was found in Red Hat Quay, where it has a persistent Cross-site Scripting (XSS) vulnerability when displaying a r... |
| CVE-2020-17514 | HIGH | 7.4 | 3.4% | May 27, 2021 | Apache Fineract prior to 1.5.0 disables HTTPS hostname verification in ProcessorHelper in the configureClient method. Un... |
| CVE-2020-27831 | MEDIUM | 4.3 | 0.5% | May 27, 2021 | A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addr... |
| CVE-2020-27839 | MEDIUM | 5.4 | 2.4% | May 26, 2021 | A flaw was found in ceph-dashboard. The JSON Web Token (JWT) used for user authentication is stored by the frontend appl... |
| CVE-2020-10695 | HIGH | 7.8 | 0.3% | May 26, 2021 | An insecure modification flaw in the /etc/passwd file was found in the redhat-sso-7 container. An attacker with access t... |
| CVE-2020-25724 | MEDIUM | 4.3 | 0.6% | May 26, 2021 | A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker t... |
| CVE-2020-25634 | MEDIUM | 5.4 | 0.5% | May 26, 2021 | A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attac... |
| CVE-2020-22028 | MEDIUM | 6.5 | 1.7% | May 26, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause... |
| CVE-2020-22026 | MEDIUM | 6.5 | 1.4% | May 26, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could... |
| CVE-2020-22024 | MEDIUM | 6.5 | 1.0% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a... |
| CVE-2020-22021 | MEDIUM | 6.5 | 1.7% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote... |
| CVE-2020-22020 | MEDIUM | 6.5 | 1.5% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could l... |
| CVE-2020-22019 | MEDIUM | 6.5 | 1.1% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a rem... |
| CVE-2020-15076 | HIGH | 7.8 | 0.4% | May 26, 2021 | Private Tunnel installer for macOS version 3.0.1 and older versions may corrupt system critical files it should not have... |
| CVE-2020-22015 | HIGH | 8.8 | 2.5% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, whi... |
| CVE-2020-24020 | HIGH | 8.8 | 1.6% | May 26, 2021 | Buffer Overflow vulnerability in FFMpeg 4.2.3 in dnn_execute_layer_pad in libavfilter/dnn/dnn_backend_native_layer_pad.c... |
| CVE-2020-18221 | MEDIUM | 6.1 | 1.2% | May 26, 2021 | Cross Site Scripting (XSS) in Typora v0.9.65 and earlier allows remote attackers to execute arbitrary code by injecting ... |
| CVE-2020-27815 | HIGH | 7.8 | 0.8% | May 26, 2021 | A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set ex... |
| CVE-2020-25697 | HIGH | 7 | 0.3% | May 26, 2021 | A privilege escalation flaw was found in the Xorg-x11-server due to a lack of authentication for X11 clients. This flaw ... |
| CVE-2020-26680 | MEDIUM | 5.4 | 0.5% | May 26, 2021 | In vFairs 3.3, any user logged in to a vFairs virtual conference or event can modify any other users profile information... |
| CVE-2020-26679 | MEDIUM | 4.3 | 0.8% | May 26, 2021 | vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference or event can modify an... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now