2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9416 | MEDIUM | 5.4 | 0.6% | Sep 15, 2020 | The Spotfire client component of TIBCO Software Inc.'s TIBCO Spotfire Analyst, TIBCO Spotfire Analytics Platform for AWS... |
| CVE-2020-14331 | MEDIUM | 6.6 | 0.6% | Sep 15, 2020 | A flaw was found in the Linux kernel’s implementation of the invert video code on VGA consoles when a local attacker att... |
| CVE-2020-10759 | MEDIUM | 6 | 0.5% | Sep 15, 2020 | A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware... |
| CVE-2020-25071 | MEDIUM | 5.4 | 0.7% | Sep 15, 2020 | Nifty Project Management Web Application 2020-08-26 allows XSS, via Add Task, that is rendered upon a Project Home visit... |
| CVE-2020-8346 | MEDIUM | 5.5 | 0.2% | Sep 15, 2020 | A denial of service vulnerability was reported in the Lenovo Vantage component called Lenovo System Interface Foundation... |
| CVE-2020-8340 | MEDIUM | 6.1 | 0.6% | Sep 15, 2020 | A cross-site scripting (XSS) vulnerability was discovered in the legacy IBM and Lenovo System x IMM2 (Integrated Managem... |
| CVE-2020-8339 | MEDIUM | 6.1 | 0.7% | Sep 15, 2020 | A cross-site scripting inclusion (XSSI) vulnerability was reported in the legacy IBM BladeCenter Advanced Management Mod... |
| CVE-2020-4711 | MEDIUM | 6.5 | 2.6% | Sep 15, 2020 | IBM Spectrum Protect Plus 10.1.0 through 10.1.6 could allow a remote attacker to traverse directories on the system. An ... |
| CVE-2020-4530 | MEDIUM | 5.4 | 0.6% | Sep 15, 2020 | IBM Business Automation Workflow C.D.0 and IBM Business Process Manager 8.0, 8.5, and 8.6 are vulnerable to cross-site s... |
| CVE-2020-4526 | MEDIUM | 4.3 | 0.5% | Sep 15, 2020 | IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to cross-site request forgery which could allow an attacker to... |
| CVE-2020-16099 | MEDIUM | 4.3 | 0.8% | Sep 15, 2020 | In Gallagher Command Centre v8.20 prior to v8.20.1093(MR2) it is possible to create Guard Tour events that when accessed... |
| CVE-2020-16097 | MEDIUM | 4.6 | 0.3% | Sep 15, 2020 | On controllers running versions of v8.20 prior to vCR8.20.200221b (distributed in v8.20.1093(MR2)), v8.10 prior to vGR8.... |
| CVE-2020-24924 | MEDIUM | 5.4 | 0.8% | Sep 15, 2020 | A Persistent Cross-site Scripting vulnerability is found in ElkarBackup v1.3.3, where an attacker can steal the user ses... |
| CVE-2020-13307 | MEDIUM | 4.7 | 1.0% | Sep 15, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was not revoking current use... |
| CVE-2020-13303 | MEDIUM | 6.5 | 1.2% | Sep 15, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Due to improper verification of per... |
| CVE-2020-8927 | MEDIUM | 6.5 | 3.2% | Sep 15, 2020 | A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of... |
| CVE-2020-13310 | MEDIUM | 6.5 | 1.7% | Sep 14, 2020 | A vulnerability was discovered in GitLab runner versions before 13.1.3, 13.2.3 and 13.3.1. It was possible to make the g... |
| CVE-2020-13305 | MEDIUM | 4.3 | 1.0% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was not invalidating project... |
| CVE-2020-13301 | MEDIUM | 4.8 | 1.1% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was vulnerable to a stored X... |
| CVE-2020-13298 | MEDIUM | 5.8 | 1.2% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Conan package upload functionality ... |
| CVE-2020-13297 | MEDIUM | 5.4 | 1.0% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. When 2 factor authentication was en... |
| CVE-2020-13317 | MEDIUM | 4.9 | 1.4% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8, and 13.3.4. An insufficient check in the Graph... |
| CVE-2020-13314 | MEDIUM | 5.3 | 1.3% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab Omniauth endpoint allowed a ... |
| CVE-2020-13313 | MEDIUM | 4.3 | 1.0% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. An unauthorized project maintainer ... |
| CVE-2020-13311 | MEDIUM | 4.3 | 1.5% | Sep 14, 2020 | A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Wiki was vulnerable to a parser att... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now