2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-14535HIGH7.4Vulnerability in the Oracle Commerce Service Center product of Oracle Commerce (component: Commerce Service Center). Sup...
CVE-2020-14534HIGH8.2Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Popups). The supported...
CVE-2020-8203HIGH7.4Prototype pollution attack when using _.zipObjectDeep in lodash before 4.17.20.
CVE-2020-15572HIGH7.5Tor before 0.4.3.6 has an out-of-bounds memory access that allows a remote denial-of-service (crash) attack against Tor ...
CVE-2020-14499HIGH7.5Advantech iView, versions 5.6 and prior, has an improper access control vulnerability. Successful exploitation of this v...
CVE-2020-1481HIGH8.8A remote code execution vulnerability exists in the ESLint extension for Visual Studio Code when it validates source cod...
CVE-2020-1469HIGH7.5A denial of service vulnerability exists when the .NET implementation of Bond improperly parses input, aka 'Bond Denial ...
CVE-2020-1465HIGH7.8An elevation of privilege vulnerability exists in Microsoft OneDrive that allows file deletion in arbitrary locations.To...
CVE-2020-1463HIGH7.8An elevation of privilege vulnerability exists in the way that the SharedStream Library handles objects in memory, aka '...
CVE-2020-1461HIGH7.1An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary loc...
CVE-2020-1458HIGH7.8A remote code execution vulnerability exists when Microsoft Office improperly validates input before loading dynamic lin...
CVE-2020-1449HIGH7.8A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source m...
CVE-2020-1448HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1447HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1446HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1439HIGH8.8A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails ...
CVE-2020-1438HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects i...
CVE-2020-1437HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Location Awareness Service handles ob...
CVE-2020-1436HIGH8.8A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted fonts.Fo...
CVE-2020-1435HIGH8.8A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects...
CVE-2020-1431HIGH7.8An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege...
CVE-2020-1430HIGH7.8An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles memory.To exploit th...
CVE-2020-1429HIGH7.8An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, ...
CVE-2020-1428HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects i...
CVE-2020-1427HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects i...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now