2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-7853CRITICAL9.8An outbound read/write vulnerability exists in XPLATFORM that does not check offset input ranges, allowing out-of-range ...
CVE-2020-26283HIGH8.8go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipf...
CVE-2020-26279HIGH8.1go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipf...
CVE-2020-7839CRITICAL9.8In MaEPSBroker 2.5.0.31 and prior, a command injection vulnerability caused by improper input validation checks when par...
CVE-2020-15809MEDIUM6.5spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversa...
CVE-2020-36283HIGH8.8HID OMNIKEY 5427 and OMNIKEY 5127 readers are vulnerable to CSRF when using the EEM driver (Ethernet Emulation Mode). By...
CVE-2020-35337CRITICAL9.8ThinkSAAS before 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title para...
CVE-2020-5015HIGH7.5IBM Elastic Storage System 6.0.0 through 6.0.1.2 and IBM Elastic Storage Server 5.3.0 through 5.3.6.2 could allow a remo...
CVE-2020-13612Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13611Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13610Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13609Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13608Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13607Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13606Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13605Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-13604Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-24994HIGH8.8Stack overflow in the parse_tag function in libass/ass_parse.c in libass before 0.15.0 allows remote attackers to cause ...
CVE-2020-12483MEDIUM6.1The appstore before 8.12.0.0 exposes some of its components, and the attacker can cause remote download and install apps...
CVE-2020-7346HIGH7.8Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, lo...
CVE-2020-28503CRITICAL9.8The package copy-props before 2.0.5 are vulnerable to Prototype Pollution via the main functionality.
CVE-2020-9213HIGH7.5There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling ...
CVE-2020-9212MEDIUM6.5There is a vulnerability in some version of USG9500 that the device improperly handles the information when a user logs ...
CVE-2020-9206MEDIUM6.7The eUDC660 product has a resource management vulnerability. An attacker with high privilege needs to perform specific o...
CVE-2020-4882MEDIUM6.1IBM Planning Analytics 2.0 could be vulnerable to a Server-Side Request Forgery (SSRF) attack by constucting URLs from u...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now