2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-17354 | HIGH | 8.6 | 0.4% | Apr 15, 2023 | LilyPond before 2.24 allows attackers to bypass the -dsafe protection mechanism via output-def-lookup or output-def-scop... |
| CVE-2020-19803 | HIGH | 8.8 | 0.4% | Apr 11, 2023 | Cross Site Request Forgery vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary cod... |
| CVE-2020-36077 | HIGH | 8.8 | 1.0% | Apr 10, 2023 | SQL injection vulnerability found in Tailor Mangement System v.1 allows a remote attacker to execute arbitrary code via ... |
| CVE-2020-19678 | HIGH | 7.5 | 3.5% | Apr 6, 2023 | Directory Traversal vulnerability found in Pfsense v.2.1.3 and Pfsense Suricata v.1.4.6 pkg v.1.0.1 allows a remote atta... |
| CVE-2020-36074 | HIGH | 8.8 | 1.4% | Apr 6, 2023 | SQL injection vulnerability found in Tailor Mangement System v.1 allows a remote attacker to execute arbitrary code via ... |
| CVE-2020-36073 | HIGH | 8.8 | 1.3% | Apr 6, 2023 | SQL injection vulnerability found in Tailor Management System v.1 allows a remote attacker to execute arbitrary code via... |
| CVE-2020-36072 | HIGH | 8.8 | 1.4% | Apr 6, 2023 | SQL injection vulnerability found in Tailor Management System v.1 allows a remote attacker to execute arbitrary code via... |
| CVE-2020-36071 | HIGH | 8.8 | 1.4% | Apr 6, 2023 | SQL injection vulnerability found in Tailor Management System v.1 allows a remote authenticated attacker to execute arbi... |
| CVE-2020-23260 | HIGH | 7.5 | 0.8% | Apr 4, 2023 | An issue found in Jsish v.3.0.11 and before allows an attacker to cause a denial of service via the StringReplaceCmd fun... |
| CVE-2020-23259 | HIGH | 7.5 | 0.8% | Apr 4, 2023 | An issue found in Jsish v.3.0.11 and before allows an attacker to cause a denial of service via the Jsi_Strlen function ... |
| CVE-2020-23258 | HIGH | 7.5 | 1.0% | Apr 4, 2023 | An issue found in Jsish v.3.0.11 allows a remote attacker to cause a denial of service via the Jsi_ValueIsNumber functio... |
| CVE-2020-23257 | HIGH | 7.5 | 0.9% | Apr 4, 2023 | Buffer Overflow vulnerability found in Espruino 2v05.41 allows an attacker to cause a denial of service via the function... |
| CVE-2020-21514 | HIGH | 8.8 | 0.8% | Apr 4, 2023 | An issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code du... |
| CVE-2020-21060 | HIGH | 8.8 | 0.9% | Apr 4, 2023 | SQL injection vulnerability found in PHPMyWind v.5.6 allows a remote attacker to gain privileges via the delete function... |
| CVE-2020-19278 | HIGH | 8.8 | 0.5% | Apr 4, 2023 | Cross Site Request Forgery vulnerability found in Phachon mm-wiki v.0.1.2 allows a remote attacker to execute arbitrary ... |
| CVE-2020-14140 | HIGH | 7.5 | 1.0% | Mar 29, 2023 | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerabil... |
| CVE-2020-8889 | HIGH | 7.5 | 1.0% | Mar 28, 2023 | The ShipStation.com plugin 1.0 for CS-Cart allows remote attackers to obtain sensitive information (via action=export) b... |
| CVE-2020-36666 | HIGH | 8.8 | 0.9% | Mar 27, 2023 | The directory-pro WordPress plugin before 1.9.5, final-user-wp-frontend-user-profiles WordPress plugin before 1.2.2, pro... |
| CVE-2020-19786 | HIGH | 8.8 | 0.8% | Mar 23, 2023 | File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and cod... |
| CVE-2020-4927 | HIGH | 8.2 | 0.3% | Mar 15, 2023 | A vulnerability in the Spectrum Scale 5.0.5.0 through 5.1.6.1 core component could allow unauthorized access to user dat... |
| CVE-2020-5002 | HIGH | 8.8 | 0.6% | Mar 10, 2023 | IBM Financial Transaction Manager 3.2.0 through 3.2.10 could allow an authenticated user to perform unauthorized actions... |
| CVE-2020-36669 | HIGH | 8.8 | 0.4% | Mar 7, 2023 | The JetBackup – WP Backup, Migrate & Restore plugin for WordPress is vulnerable to Cross-Site Request Forgery in version... |
| CVE-2020-5026 | HIGH | 7.5 | 0.7% | Mar 1, 2023 | IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.7 could allow a remote attac... |
| CVE-2020-5001 | HIGH | 7.5 | 1.0% | Mar 1, 2023 | IBM Financial Transaction Manager 3.2.0 through 3.2.7 could allow a remote attacker to traverse directories on the syst... |
| CVE-2020-36652 | HIGH | 7.1 | 0.1% | Feb 28, 2023 | Incorrect Default Permissions vulnerability in Hitachi Automation Director on Linux, Hitachi Infrastructure Analytics Ad... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now