2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-37244 | HIGH | 8.8 | 0.3% | May 16, 2026 | Supsystic Membership 1.4.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbi... |
| CVE-2020-37243 | HIGH | 8.8 | 0.3% | May 16, 2026 | Supsystic Pricing Table 1.8.7 contains an SQL injection vulnerability in the 'sidx' GET parameter that allows unauthenti... |
| CVE-2020-37242 | HIGH | 8.8 | 0.3% | May 16, 2026 | Supsystic Ultimate Maps 1.1.12 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2020-37241 | MEDIUM | 6.9 | 0.1% | May 16, 2026 | bloofoxCMS 0.5.2.1 contains a cross-site request forgery vulnerability that allows attackers to perform administrative a... |
| CVE-2020-37240 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | Queue Management System 4.0.0 contains a stored cross-site scripting vulnerability that allows authenticated administrat... |
| CVE-2020-37239 | CRITICAL | 9.8 | 0.5% | May 16, 2026 | libbabl 0.1.62 contains a broken double free detection vulnerability that allows attackers to bypass memory safety check... |
| CVE-2020-37238 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | CMS Made Simple 2.2.15 contains a stored cross-site scripting vulnerability that allows authenticated users with Content... |
| CVE-2020-37237 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | Composr CMS 10.0.34 contains a persistent cross-site scripting vulnerability that allows authenticated administrators to... |
| CVE-2020-37236 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | NewsLister contains an authenticated persistent cross-site scripting vulnerability that allows authenticated administrat... |
| CVE-2020-37235 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | WordPress Theme Wibar 1.1.8 contains a stored cross-site scripting vulnerability in the Brand component that allows auth... |
| CVE-2020-37234 | MEDIUM | 6.9 | 0.1% | May 16, 2026 | Internet Download Manager 6.38.12 contains a buffer overflow vulnerability in the Scheduler component that allows local ... |
| CVE-2020-37233 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | WordPress Plugin Buddypress 6.2.0 contains a persistent cross-site scripting vulnerability that allows authenticated att... |
| CVE-2020-37232 | HIGH | 8.5 | 0.1% | May 16, 2026 | Advanced System Care Service 13.0.0.157 contains an unquoted service path vulnerability in the AdvancedSystemCareService... |
| CVE-2020-37231 | HIGH | 8.5 | 0.1% | May 16, 2026 | Privacy Drive 3.17.0 contains an unquoted service path vulnerability in the pdsvc.exe service binary that allows local a... |
| CVE-2020-37230 | HIGH | 8.5 | 0.1% | May 16, 2026 | Syncplify.me Server! 5.0.37 contains an unquoted service path vulnerability in the SMWebRestServicev5 service that allow... |
| CVE-2020-37229 | HIGH | 8.5 | 0.1% | May 16, 2026 | OKI sPSV Port Manager 1.0.41 contains an unquoted service path vulnerability in the sPSVOpLclSrv service that allows loc... |
| CVE-2020-37228 | CRITICAL | 9.8 | 0.4% | May 16, 2026 | iDS6 DSSPro Digital Signage System 6.2 contains a CAPTCHA security bypass vulnerability that allows attackers to bypass ... |
| CVE-2020-37227 | HIGH | 8.8 | 0.5% | May 16, 2026 | HS Brand Logo Slider 2.1 contains an unrestricted file upload vulnerability that allows authenticated users to bypass cl... |
| CVE-2020-37226 | HIGH | 7.1 | 0.3% | May 13, 2026 | Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu... |
| CVE-2020-37225 | MEDIUM | 6.4 | 0.2% | May 13, 2026 | Powie's WHOIS Domain Check 0.9.31 contains a persistent cross-site scripting vulnerability that allows authenticated att... |
| CVE-2020-37224 | HIGH | 7.1 | 0.3% | May 13, 2026 | Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu... |
| CVE-2020-37223 | HIGH | 8.5 | 0.1% | May 13, 2026 | IObit Uninstaller 9.5.0.15 contains an unquoted service path vulnerability in the IObitUnSvr service that allows local a... |
| CVE-2020-37222 | HIGH | 7.2 | 0.3% | May 13, 2026 | Kuicms Php EE 2.0 contains a persistent cross-site scripting vulnerability that allows unauthenticated attackers to inje... |
| CVE-2020-37221 | HIGH | 8.6 | 0.2% | May 13, 2026 | Atomic Alarm Clock 6.3 contains a stack overflow vulnerability that allows local attackers to execute arbitrary code by ... |
| CVE-2020-37220 | HIGH | 8.7 | 0.4% | May 13, 2026 | Huawei HG630 V2 router contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain a... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now