2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-6500MEDIUM6.5Inappropriate implementation in interstitials in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof ...
CVE-2020-6499MEDIUM6.5Inappropriate implementation in AppCache in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass AppC...
CVE-2020-6498MEDIUM6.5Incorrect implementation in user interface in Google Chrome on iOS prior to 83.0.4103.88 allowed a remote attacker to pe...
CVE-2020-6497MEDIUM6.5Insufficient policy enforcement in Omnibox in Google Chrome on iOS prior to 83.0.4103.88 allowed a remote attacker to pe...
CVE-2020-6495MEDIUM6.5Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.97 allowed an attacker who convin...
CVE-2020-6494MEDIUM6.5Incorrect security UI in payments in Google Chrome on Android prior to 83.0.4103.97 allowed a remote attacker to spoof t...
CVE-2020-11091MEDIUM5.8In Weave Net before version 2.6.3, an attacker able to run a process as root in a container is able to respond to DNS re...
CVE-2020-5299MEDIUM5.1In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, any users with the ability to...
CVE-2020-5298MEDIUM4.8In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, a user with the ability to us...
CVE-2020-5296MEDIUM4.9In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, an attacker can exploit this ...
CVE-2020-5295MEDIUM4.9In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, an attacker can exploit this ...
CVE-2020-13798MEDIUM6.1An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/f...
CVE-2020-13797MEDIUM6.1An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/w...
CVE-2020-13796MEDIUM6.1An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/s...
CVE-2020-13795MEDIUM5.3An issue was discovered in Navigate CMS through 2.8.7. It allows Directory Traversal because lib/packages/templates/temp...
CVE-2020-13792MEDIUM4.3PlayTube 1.8 allows disclosure of user details via ajax.php?type=../admin-panel/autoload&page=manage-users directory tra...
CVE-2020-3353MEDIUM5.9A vulnerability in the syslog processing engine of Cisco Identity Services Engine (ISE) could allow an unauthenticated, ...
CVE-2020-3339MEDIUM5.4A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote...
CVE-2020-7015MEDIUM5.4Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in the TSVB visualization. An attacker who is able to ...
CVE-2020-7011MEDIUM6.1Elastic App Search versions before 7.7.0 contain a cross site scripting (XSS) flaw when displaying document URLs in the ...
CVE-2020-3335MEDIUM5.5A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attac...
CVE-2020-3333MEDIUM5.3A vulnerability in the API of Cisco Application Services Engine Software could allow an unauthenticated, remote attacker...
CVE-2020-3237MEDIUM6.3A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an aut...
CVE-2020-3233MEDIUM5.4A vulnerability in the web-based Local Manager interface of the Cisco IOx Application Framework could allow an authentic...
CVE-2020-3231MEDIUM4.7A vulnerability in the 802.1X feature of Cisco Catalyst 2960-L Series Switches and Cisco Catalyst CDB-8P Switches could ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now