2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36803Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36802Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36801Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36800Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36799Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36798Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36797Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36796Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36795Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36794Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36793Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-36792Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was in a CNA pool that w...
CVE-2020-9322HIGH8.8The /users endpoint in Statamic Core before 2.11.8 allows XSS to add an administrator user. This can be exploited via CS...
CVE-2020-36850HIGH8.7An information disclosure vulnerability exits in Sitecore JSS React Sample Application 11.0.0 - 14.0.1 that may cause pa...
CVE-2020-26799CRITICAL9.8A reflected cross-site scripting (XSS) vulnerability was discovered in index.php on Luxcal 4.5.2 which allows an unauthe...
CVE-2020-36849CRITICAL9.8The AIT CSV import/export plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validati...
CVE-2020-36848HIGH7.5The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Sens...
CVE-2020-36847CRITICAL9.8The Simple-File-List Plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 4.2.2...
CVE-2020-36846CRITICAL9.8A buffer overflow, as described in CVE-2020-8927, exists in the embedded Brotli library.  Versions of IO::Compress::Brot...
CVE-2020-36791HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net_sched: keep alloc_hash updated after hash alloc...
CVE-2020-36790MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a memory leak We forgot to free new_mod...
CVE-2020-36845MEDIUM6.1The KnowBe4 Security Awareness Training application before 2020-01-10 contains a redirect function that does not validat...
CVE-2020-36844MEDIUM6.1The KnowBe4 Security Awareness Training application before 2020-01-10 allows reflected XSS. The response has a SCRIPT el...
CVE-2020-36789MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: can: dev: can_get_echo_skb(): prevent call to kfree...
CVE-2020-18243MEDIUM6.5SQL injection vulnerability found in Enricozab CMS v.1.0 allows a remote attacker to execute arbitrary code via /hdo/hdo...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now