2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-1641MEDIUM6.5A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to cras...
CVE-2020-5130MEDIUM5.3SonicOS SSLVPN LDAP login request allows remote attackers to cause external service interaction (DNS) due to improper va...
CVE-2020-15497MEDIUM6.1jcore/portal/ajaxPortal.jsp in Jalios JCMS 10.0.2 build-20200224104759 allows XSS via the types parameter. Note: It is a...
CVE-2020-15807MEDIUM6.5GNU LibreDWG before 0.11 allows NULL pointer dereferences via crafted input files.
CVE-2020-15586MEDIUM5.9Go before 1.13.13 and 1.14.x before 1.14.5 has a data race in some net/http servers, as demonstrated by the httputil.Rev...
CVE-2020-14928MEDIUM5.9evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3. When a server send...
CVE-2020-14039MEDIUM5.3In Go before 1.13.13 and 1.14.x before 1.14.5, Certificate.Verify may lack a check on the VerifyOptions.KeyUsages EKU re...
CVE-2020-7696MEDIUM5.3This affects all versions of package react-native-fast-image. When an image with source={{uri: "...", headers: { host: "...
CVE-2020-15803MEDIUM6.1Zabbix before 3.0.32rc1, 4.x before 4.0.22rc1, 4.1.x through 4.4.x before 4.4.10rc1, and 5.x before 5.0.2rc1 allows stor...
CVE-2020-9649MEDIUM5.5Adobe Media Encoder versions 14.2 and earlier have an out-of-bounds read vulnerability. Successful exploitation could le...
CVE-2020-9485MEDIUM6.1An issue was found in Apache Airflow versions 1.10.10 and below. A stored XSS vulnerability was discovered in the Chart ...
CVE-2020-11983MEDIUM5.4An issue was found in Apache Airflow versions 1.10.10 and below. It was discovered that many of the admin management scr...
CVE-2020-4095MEDIUM6"BigFix Platform is storing clear text credentials within the system's memory. An attacker who is able to gain administr...
CVE-2020-3468MEDIUM5.4A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem...
CVE-2020-3450MEDIUM4.9A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica...
CVE-2020-3437MEDIUM6.5A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem...
CVE-2020-3406MEDIUM5.4A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated,...
CVE-2020-3401MEDIUM6.5A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem...
CVE-2020-3385MEDIUM6.5A vulnerability in the deep packet inspection (DPI) engine of Cisco SD-WAN vEdge Routers could allow an unauthenticated,...
CVE-2020-3378MEDIUM4.3A vulnerability in the web-based management interface for Cisco SD-WAN vManage Software could allow an authenticated, re...
CVE-2020-3372MEDIUM6.5A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem...
CVE-2020-3370MEDIUM5.8A vulnerability in URL filtering of Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, re...
CVE-2020-3349MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a...
CVE-2020-3348MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a...
CVE-2020-3345MEDIUM4.3A vulnerability in certain web pages of Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthentica...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now