2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-6123HIGH8.8An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email p...
CVE-2020-6122HIGH8.8SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The mn parameter in the p...
CVE-2020-6121HIGH8.8SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The ln parameter in the ...
CVE-2020-6120HIGH8.8SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The fn parameter in the p...
CVE-2020-6119HIGH8.8SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The byear parameter in t...
CVE-2020-6118HIGH8.8SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bmonth parameter in ...
CVE-2020-6117HIGH8.8SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bday parameter in th...
CVE-2020-2245HIGH7.1Jenkins Valgrind Plugin 0.28 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
CVE-2020-2241HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins database Plugin 1.6 and earlier allows attackers to connect...
CVE-2020-2240HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins database Plugin 1.6 and earlier allows attackers to execute...
CVE-2020-24554HIGH7.5The redirect module in Liferay Portal before 7.3.3 does not limit the number of URLs resulting in a 404 error that is re...
CVE-2020-24584HIGH7.5An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used)....
CVE-2020-24583HIGH7.5An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used)....
CVE-2020-8023HIGH7.8A acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in the start script of openldap2 of SUSE Enter...
CVE-2020-7720HIGH7.3The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0...
CVE-2020-12776HIGH7.2Openfind Mail2000 contains Broken Access Control vulnerability, which can be used to execute unauthorized commands after...
CVE-2020-14178HIGH7.5Affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate project keys via an Infor...
CVE-2020-25067HIGH8.8NETGEAR R8300 devices before 1.0.2.134 are affected by command injection by an unauthenticated attacker.
CVE-2020-25065HIGH7.5An issue was discovered on LG mobile devices with Android OS 4.4, 5.0, 5.1, 6.0, 7.0, 7.1, 8.0, 8.1, 9.0, and 10 softwar...
CVE-2020-25064HIGH7.5An issue was discovered on LG mobile devices with Android OS 4.4, 5.0, 5.1, 6.0, 7.0, 7.1, 8.0, 8.1, 9.0, and 10 softwar...
CVE-2020-25063HIGH7.5An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. An application crash can...
CVE-2020-25060HIGH7.8An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Local users can gain pri...
CVE-2020-25059HIGH7.5An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A service crash may occu...
CVE-2020-25056HIGH7.5An issue was discovered on Samsung mobile devices with Q(10.0) (Galaxy S20) software. Because HAL improperly checks vers...
CVE-2020-25051HIGH7.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Attackers can bypass Factory Reset P...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now