2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-15940MEDIUM5.4An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and belo...
CVE-2020-12814MEDIUM5.4A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version...
CVE-2020-35249MEDIUM6.1Cross Site Scripting (XSS) vulnerability in ElkarBackup 1.3.3, allows attackers to execute arbitrary code via the name p...
CVE-2020-27406MEDIUM5.4Cross Site Scripting (XSS) vulnerability in DynPG 4.9.1, allows authenticated attackers to execute arbitrary code via th...
CVE-2020-36505MEDIUM6.5The Delete All Comments Easily WordPress plugin through 1.3 is lacking Cross-Site Request Forgery (CSRF) checks, which c...
CVE-2020-36504MEDIUM6.5The WP-Pro-Quiz WordPress plugin through 0.37 does not have CSRF check in place when deleting a quiz, which could allow ...
CVE-2020-25881MEDIUM5.5A vulnerability was discovered in the filename parameter in pathindex.php?r=cms-backend/attachment/delete&sub=&filename=...
CVE-2020-25873MEDIUM6.5A directory traversal vulnerability in the component system/manager/class/web/database.php was discovered in Baijiacms V...
CVE-2020-25872MEDIUM4.9A vulnerability exists within the FileManagerController.php function in FrogCMS 0.9.5 which allows an attacker to perfor...
CVE-2020-29629MEDIUM5.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A malic...
CVE-2020-25422MEDIUM5.4A cross site scripting (XSS) vulnerability in menuedit.php of Mara CMS 7.5 allows attackers to execute arbitrary web scr...
CVE-2020-10005MEDIUM6.5A resource exhaustion issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A...
CVE-2020-22312MEDIUM6.1A cross-site scripting (XSS) vulnerability was discovered in the OJ/admin-tool /cal_scores.php function of HZNUOJ v1.0.
CVE-2020-22864MEDIUM6.1A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers ...
CVE-2020-5669MEDIUM5.4Cross-site scripting vulnerability in Movable Type Movable Type Premium 1.37 and earlier and Movable Type Premium Advanc...
CVE-2020-20908MEDIUM5.4Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to ...
CVE-2020-36502MEDIUM6.1Swift File Transfer Mobile v1.1.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the devicenam...
CVE-2020-36501MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Support module of SugarCRM v6.5.18 allows attackers to execut...
CVE-2020-36499MEDIUM5.4TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a cross-site scripting (XSS) vulnerability in ...
CVE-2020-36498MEDIUM5.4Macrob7 Macs Framework Content Management System - 1.14f contains a cross-site scripting (XSS) vulnerability in the acco...
CVE-2020-36497MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component makehtml...
CVE-2020-36496MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component sys_admi...
CVE-2020-36495MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man...
CVE-2020-36494MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component mychanne...
CVE-2020-36493MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component media_ma...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now