2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-22030HIGH8.8A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/af_afade.c in crossfade_samples_fltp, whi...
CVE-2020-22029HIGH8.8A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_colorconstancy.c: in slice_get_derivat...
CVE-2020-18230MEDIUM4.8Cross Site Scripting (XSS) in PHPMyWind v5.5 allows remote attackers to execute arbitrary code by injecting scripts into...
CVE-2020-18229MEDIUM4.8Cross Site Scripting (XSS) in PHPMyWind v5.5 allows remote attackers to execute arbitrary code by injecting scripts into...
CVE-2020-27832CRITICAL9A flaw was found in Red Hat Quay, where it has a persistent Cross-site Scripting (XSS) vulnerability when displaying a r...
CVE-2020-17514HIGH7.4Apache Fineract prior to 1.5.0 disables HTTPS hostname verification in ProcessorHelper in the configureClient method. Un...
CVE-2020-27831MEDIUM4.3A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addr...
CVE-2020-27839MEDIUM5.4A flaw was found in ceph-dashboard. The JSON Web Token (JWT) used for user authentication is stored by the frontend appl...
CVE-2020-10695HIGH7.8An insecure modification flaw in the /etc/passwd file was found in the redhat-sso-7 container. An attacker with access t...
CVE-2020-25724MEDIUM4.3A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker t...
CVE-2020-25634MEDIUM5.4A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attac...
CVE-2020-22028MEDIUM6.5Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause...
CVE-2020-22026MEDIUM6.5Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could...
CVE-2020-22024MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a...
CVE-2020-22021MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote...
CVE-2020-22020MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could l...
CVE-2020-22019MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a rem...
CVE-2020-15076HIGH7.8Private Tunnel installer for macOS version 3.0.1 and older versions may corrupt system critical files it should not have...
CVE-2020-22015HIGH8.8Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, whi...
CVE-2020-24020HIGH8.8Buffer Overflow vulnerability in FFMpeg 4.2.3 in dnn_execute_layer_pad in libavfilter/dnn/dnn_backend_native_layer_pad.c...
CVE-2020-18221MEDIUM6.1Cross Site Scripting (XSS) in Typora v0.9.65 and earlier allows remote attackers to execute arbitrary code by injecting ...
CVE-2020-27815HIGH7.8A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set ex...
CVE-2020-25697HIGH7A privilege escalation flaw was found in the Xorg-x11-server due to a lack of authentication for X11 clients. This flaw ...
CVE-2020-26680MEDIUM5.4In vFairs 3.3, any user logged in to a vFairs virtual conference or event can modify any other users profile information...
CVE-2020-26679MEDIUM4.3vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference or event can modify an...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now