2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-4019 | HIGH | 7.8 | 0.4% | Jun 1, 2020 | The file editing functionality in the Atlassian Companion App before version 1.0.0 allows local attackers to have the ap... |
| CVE-2020-4018 | HIGH | 8.8 | 0.6% | Jun 1, 2020 | The setup resources in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to complete the setup... |
| CVE-2020-7654 | HIGH | 7.5 | 1.1% | May 29, 2020 | All versions of snyk-broker before 4.73.1 are vulnerable to Information Exposure. It logs private keys if logging level ... |
| CVE-2020-6937 | HIGH | 7.5 | 1.2% | May 29, 2020 | A Denial of Service vulnerability in MuleSoft Mule CE/EE 3.8.x, 3.9.x, and 4.x released before April 7, 2020, could allo... |
| CVE-2020-3957 | HIGH | 7 | 0.2% | May 29, 2020 | VMware Fusion (11.x before 11.5.5), VMware Remote Console for Mac (11.x and prior) and VMware Horizon Client for Mac (5.... |
| CVE-2020-1870 | HIGH | 7.5 | 0.7% | May 29, 2020 | There is a denial of service vulnerability in some Huawei products. Due to improper memory management, memory leakage ma... |
| CVE-2020-1832 | HIGH | 8.8 | 0.5% | May 29, 2020 | E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00) have a stack buffer overflow vulnera... |
| CVE-2020-8816 | HIGH | 7.2 | 77.8% | May 29, 2020 | Pi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via a crafted DHCP static l... |
| CVE-2020-13634 | HIGH | 7.8 | 0.4% | May 29, 2020 | In Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users ... |
| CVE-2020-12675 | HIGH | 8.8 | 2.8% | May 29, 2020 | The mappress-google-maps-for-wordpress plugin before 2.54.6 for WordPress does not correctly implement capability checks... |
| CVE-2020-4352 | HIGH | 7 | 0.3% | May 29, 2020 | IBM MQ on HPE NonStop 8.0.4 and 8.1.0 is vulnerable to a privilege escalation attack when running in restricted mode. IB... |
| CVE-2020-13173 | HIGH | 7.8 | 0.2% | May 28, 2020 | Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent fo... |
| CVE-2020-8330 | HIGH | 7.5 | 1.5% | May 28, 2020 | A denial of service vulnerability was reported in the firmware prior to version 1.01 used in Lenovo Printer LJ4010DN tha... |
| CVE-2020-8329 | HIGH | 7.5 | 1.5% | May 28, 2020 | A denial of service vulnerability was reported in the firmware prior to version 1.01 used in Lenovo Printer LJ4010DN tha... |
| CVE-2020-4246 | HIGH | 7.1 | 1.4% | May 28, 2020 | IBM Security Identity Governance and Intelligence 5.2.6 is vulnerable to an XML External Entity Injection (XXE) attack w... |
| CVE-2020-4245 | HIGH | 7.5 | 1.2% | May 28, 2020 | IBM Security Identity Governance and Intelligence 5.2.6 does not require that users should have strong passwords by defa... |
| CVE-2020-4232 | HIGH | 7.5 | 1.1% | May 28, 2020 | IBM Security Identity Governance and Intelligence 5.2.6 could allow an attacker to enumerate usernames to find valid log... |
| CVE-2020-13649 | HIGH | 7.5 | 2.1% | May 28, 2020 | parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated b... |
| CVE-2020-11950 | HIGH | 8.8 | 2.7% | May 28, 2020 | VIVOTEK Network Cameras before XXXXX-VVTK-2.2002.xx.01x (and before XXXXX-VVTK-0XXXX_Beta2) allows an authenticated user... |
| CVE-2020-13643 | HIGH | 8.8 | 0.8% | May 28, 2020 | An issue was discovered in the SiteOrigin Page Builder plugin before 2.10.16 for WordPress. The live editor feature did ... |
| CVE-2020-13642 | HIGH | 8.8 | 0.8% | May 28, 2020 | An issue was discovered in the SiteOrigin Page Builder plugin before 2.10.16 for WordPress. The action_builder_content f... |
| CVE-2020-13641 | HIGH | 8.8 | 0.8% | May 28, 2020 | An issue was discovered in the Real-Time Find and Replace plugin before 4.0.2 for WordPress. The far_options_page functi... |
| CVE-2020-8605 | HIGH | 8.8 | 87.6% | May 27, 2020 | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to execute arbitr... |
| CVE-2020-8604 | HIGH | 7.5 | 89.7% | May 27, 2020 | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to disclose sensi... |
| CVE-2020-11059 | HIGH | 7.5 | 1.1% | May 27, 2020 | In AEgir greater than or equal to 21.7.0 and less than 21.10.1, aegir publish and aegir build may leak secrets from envi... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now