2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36223HIGH7.5A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, r...
CVE-2020-36222HIGH7.5A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, ...
CVE-2020-36221HIGH7.5An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertio...
CVE-2020-36220MEDIUM5.9An issue was discovered in the va-ts crate before 0.0.4 for Rust. Because Demuxer<T> omits a required T: Send bound, a d...
CVE-2020-36219MEDIUM5.9An issue was discovered in the atomic-option crate through 2020-10-31 for Rust. Because AtomicOption<T> implements Sync ...
CVE-2020-36218MEDIUM5.9An issue was discovered in the buttplug crate before 1.0.4 for Rust. ButtplugFutureStateShared does not properly conside...
CVE-2020-36217MEDIUM5.9An issue was discovered in the may_queue crate through 2020-11-10 for Rust. Because Queue does not have bounds on its Se...
CVE-2020-36216MEDIUM5.9An issue was discovered in Input<R> in the eventio crate before 0.5.1 for Rust. Because a non-Send type can be sent to a...
CVE-2020-36215HIGH7.5An issue was discovered in the hashconsing crate before 1.1.0 for Rust. Because HConsed does not have bounds on its Send...
CVE-2020-36214MEDIUM5.9An issue was discovered in the multiqueue2 crate before 0.1.7 for Rust. Because a non-Send type can be sent to a differe...
CVE-2020-36213HIGH7.5An issue was discovered in the abi_stable crate before 0.9.1 for Rust. A retain call can create an invalid UTF-8 string,...
CVE-2020-36212HIGH7.5An issue was discovered in the abi_stable crate before 0.9.1 for Rust. DrainFilter lacks soundness because of a double d...
CVE-2020-36211HIGH7An issue was discovered in the gfwx crate before 0.3.0 for Rust. Because ImageChunkMut does not have bounds on its Send ...
CVE-2020-36210HIGH7.8An issue was discovered in the autorand crate before 0.2.3 for Rust. Because of impl Random on arrays, uninitialized mem...
CVE-2020-36209HIGH7An issue was discovered in the late-static crate before 0.4.0 for Rust. Because Sync is implemented for LateStatic with ...
CVE-2020-36208HIGH7.8An issue was discovered in the conquer-once crate before 0.3.2 for Rust. Thread crossing can occur for a non-Send but Sy...
CVE-2020-36207HIGH7An issue was discovered in the aovec crate through 2020-12-10 for Rust. Because Aovec<T> does not have bounds on its Sen...
CVE-2020-36206HIGH7An issue was discovered in the rusb crate before 0.7.0 for Rust. Because of a lack of Send and Sync bounds, a data race ...
CVE-2020-36205MEDIUM5.5An issue was discovered in the xcb crate through 2020-12-10 for Rust. base::Error does not have soundness. Because of th...
CVE-2020-36204MEDIUM4.7An issue was discovered in the im crate through 2020-11-09 for Rust. Because TreeFocus does not have bounds on its Send ...
CVE-2020-36203MEDIUM4.7An issue was discovered in the reffers crate through 2020-12-01 for Rust. ARefss can contain a !Send,!Sync object, leadi...
CVE-2020-36202MEDIUM6.1An issue was discovered in the async-h1 crate before 2.3.0 for Rust. Request smuggling can occur when used behind a reve...
CVE-2020-36201HIGH7.5An issue was discovered in certain Xerox WorkCentre products. They do not properly encrypt passwords. This affects 3655,...
CVE-2020-36200MEDIUM6.5TinyCheck before commits 9fd360d and ea53de8 allowed an authenticated attacker to send an HTTP GET request to the crafte...
CVE-2020-36199CRITICAL9.8TinyCheck before commits 9fd360d and ea53de8 was vulnerable to command injection due to insufficient checks of input par...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now