2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-35874 | HIGH | 8.1 | 1.0% | Dec 31, 2020 | An issue was discovered in the internment crate through 2020-05-28 for Rust. ArcIntern::drop has a race condition and re... |
| CVE-2020-35873 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because sessions.rs ... |
| CVE-2020-35872 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via the repr(Rust) t... |
| CVE-2020-35871 | HIGH | 8.1 | 1.0% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API d... |
| CVE-2020-35870 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API u... |
| CVE-2020-35869 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because rusqlite::tr... |
| CVE-2020-35868 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via UnlockNotificati... |
| CVE-2020-35867 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via create_module. |
| CVE-2020-35866 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via VTab / VTabCurso... |
| CVE-2020-35865 | HIGH | 7.5 | 1.3% | Dec 31, 2020 | An issue was discovered in the os_str_bytes crate before 2.0.0 for Rust. It has false expectations about char::from_u32_... |
| CVE-2020-35864 | HIGH | 7.5 | 0.6% | Dec 31, 2020 | An issue was discovered in the flatbuffers crate through 2020-04-11 for Rust. read_scalar (and read_scalar_at) can trans... |
| CVE-2020-35863 | CRITICAL | 9.8 | 2.8% | Dec 31, 2020 | An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execut... |
| CVE-2020-35862 | CRITICAL | 9.8 | 1.6% | Dec 31, 2020 | An issue was discovered in the bitvec crate before 0.17.4 for Rust. BitVec to BitBox conversion leads to a use-after-fre... |
| CVE-2020-35861 | HIGH | 7.5 | 1.5% | Dec 31, 2020 | An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown me... |
| CVE-2020-35860 | CRITICAL | 9.8 | 1.6% | Dec 31, 2020 | An issue was discovered in the cbox crate through 2020-03-19 for Rust. The CBox API allows dereferencing raw pointers wi... |
| CVE-2020-35859 | CRITICAL | 9.1 | 1.5% | Dec 31, 2020 | An issue was discovered in the lucet-runtime-internals crate before 0.5.1 for Rust. It mishandles sigstack allocation. G... |
| CVE-2020-35858 | CRITICAL | 9.8 | 3.3% | Dec 31, 2020 | An issue was discovered in the prost crate before 0.6.1 for Rust. There is stack consumption via a crafted message, caus... |
| CVE-2020-35857 | HIGH | 7.5 | 1.4% | Dec 31, 2020 | An issue was discovered in the trust-dns-server crate before 0.18.1 for Rust. DNS MX and SRV null targets are mishandled... |
| CVE-2020-35928 | MEDIUM | 4.7 | 0.2% | Dec 31, 2020 | An issue was discovered in the concread crate before 0.2.6 for Rust. Attackers can cause an ARCache<K,V> data race by se... |
| CVE-2020-35927 | MEDIUM | 5.5 | 0.3% | Dec 31, 2020 | An issue was discovered in the thex crate through 2020-12-08 for Rust. Thex<T> allows cross-thread data races of non-Sen... |
| CVE-2020-35926 | CRITICAL | 9.8 | 1.5% | Dec 31, 2020 | An issue was discovered in the nanorand crate before 0.5.1 for Rust. It caused any random number generator (even ChaCha)... |
| CVE-2020-35925 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the magnetic crate before 2.0.1 for Rust. MPMCConsumer and MPMCProducer allow cross-thread se... |
| CVE-2020-35924 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the try-mutex crate before 0.3.0 for Rust. TryMutex<T> allows cross-thread sending of a non-S... |
| CVE-2020-35923 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the ordered-float crate before 1.1.1 and 2.x before 2.0.1 for Rust. A NotNan value can contai... |
| CVE-2020-35922 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the mio crate before 0.7.6 for Rust. It has false expectations about the std::net::SocketAddr... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now