2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-7456MEDIUM6.8In FreeBSD 12.1-STABLE before r361918, 12.1-RELEASE before p6, 11.4-STABLE before r361919, 11.3-RELEASE before p10, and ...
CVE-2020-13911MEDIUM5.4Your Online Shop 1.8.0 allows authenticated users to trigger XSS via a Change Name or Change Surname operation.
CVE-2020-13892MEDIUM5.4The SportsPress plugin before 2.7.2 for WordPress allows XSS.
CVE-2020-9856MEDIUM5.3This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.5. An application may be able...
CVE-2020-9851MEDIUM5.5An access issue was addressed with improved access restrictions. This issue is fixed in macOS Catalina 10.15.5. A malici...
CVE-2020-9835MEDIUM5.3An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic. This issue is fixed in iO...
CVE-2020-9833MEDIUM5.5A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.5...
CVE-2020-9832MEDIUM5.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5. A mal...
CVE-2020-9831MEDIUM5.5An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.5. A mali...
CVE-2020-9829MEDIUM6.5A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 13.5 and iPadOS 13.5, tvOS...
CVE-2020-9819MEDIUM4.3A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5 and iPadOS 13.5,...
CVE-2020-9812MEDIUM5.5An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS...
CVE-2020-9811MEDIUM5.5An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS...
CVE-2020-9809MEDIUM5.5An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS...
CVE-2020-9804MEDIUM4.6A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.5. Inserting a USB d...
CVE-2020-9801MEDIUM5.3A logic issue was addressed with improved restrictions. This issue is fixed in Safari 13.1.1. A malicious process may ca...
CVE-2020-9797MEDIUM5.5An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.5 and iPadO...
CVE-2020-9792MEDIUM4.6A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 13.5 and iPadOS 13.5, macO...
CVE-2020-3882MEDIUM6.5This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.5. Importing a maliciously cr...
CVE-2020-13266MEDIUM4.3Insecure authorization in Project Deploy Keys in GitLab CE/EE 12.8 and later through 13.0.1 allows users to update permi...
CVE-2020-13980MEDIUM4.8OpenCart 3.0.3.3 allows remote authenticated users to conduct XSS attacks via a crafted filename in the users' image upl...
CVE-2020-13977MEDIUM4.9Nagios 4.4.5 allows an attacker, who already has administrative access to change the "URL for JSON CGIs" configuration s...
CVE-2020-10761MEDIUM5An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. Thi...
CVE-2020-13973MEDIUM6.1OWASP json-sanitizer before 1.2.1 allows XSS. An attacker who controls a substring of the input JSON, and controls anoth...
CVE-2020-13965MEDIUM6.1An issue was discovered in Roundcube Webmail before 1.3.12 and 1.4.x before 1.4.5. There is XSS via a malicious XML atta...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now