2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-35921MEDIUM5.5An issue was discovered in the miow crate before 0.3.6 for Rust. It has false expectations about the std::net::SocketAdd...
CVE-2020-35920MEDIUM5.5An issue was discovered in the socket2 crate before 0.3.16 for Rust. It has false expectations about the std::net::Socke...
CVE-2020-35919MEDIUM5.5An issue was discovered in the net2 crate before 0.2.36 for Rust. It has false expectations about the std::net::SocketAd...
CVE-2020-35918MEDIUM5.5An issue was discovered in the branca crate before 0.10.0 for Rust. Decoding tokens (with invalid base62 data) can panic...
CVE-2020-35917MEDIUM5.5An issue was discovered in the pyo3 crate before 0.12.4 for Rust. There is a reference-counting error and use-after-free...
CVE-2020-35916MEDIUM5.5An issue was discovered in the image crate before 0.23.12 for Rust. A Mutable reference has immutable provenance. (In th...
CVE-2020-35915MEDIUM5.5An issue was discovered in the futures-intrusive crate before 0.4.0 for Rust. GenericMutexGuard allows cross-thread data...
CVE-2020-35914MEDIUM4.7An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of RwLockWriteGuard u...
CVE-2020-35913MEDIUM4.7An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of RwLockReadGuard un...
CVE-2020-35912MEDIUM4.7An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedRwLockWriteG...
CVE-2020-35911MEDIUM4.7An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedRwLockReadGu...
CVE-2020-35910MEDIUM5.5An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedMutexGuard u...
CVE-2020-35909HIGH7.5An issue was discovered in the multihash crate before 0.11.3 for Rust. The from_slice parsing code can panic via unsanit...
CVE-2020-35908MEDIUM5.5An issue was discovered in the futures-util crate before 0.3.2 for Rust. FuturesUnordered can lead to data corruption be...
CVE-2020-35907MEDIUM5.5An issue was discovered in the futures-task crate before 0.3.5 for Rust. futures_task::noop_waker_ref allows a NULL poin...
CVE-2020-35906HIGH7.8An issue was discovered in the futures-task crate before 0.3.6 for Rust. futures_task::waker may cause a use-after-free ...
CVE-2020-35905MEDIUM4.7An issue was discovered in the futures-util crate before 0.3.7 for Rust. MutexGuard::map can cause a data race for certa...
CVE-2020-35904MEDIUM5.5An issue was discovered in the crossbeam-channel crate before 0.4.4 for Rust. It has incorrect expectations about the re...
CVE-2020-35903MEDIUM5.5An issue was discovered in the dync crate before 0.5.0 for Rust. VecCopy allows misaligned element access because u8 is ...
CVE-2020-35902CRITICAL9.8An issue was discovered in the actix-codec crate before 0.3.0-beta.1 for Rust. There is a use-after-free in Framed.
CVE-2020-35901HIGH7.5An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream.
CVE-2020-35900MEDIUM5.5An issue was discovered in the array-queue crate through 2020-09-26 for Rust. A pop_back() call may lead to a use-after-...
CVE-2020-35899MEDIUM5.5An issue was discovered in the actix-service crate before 1.0.6 for Rust. The Cell implementation allows obtaining more ...
CVE-2020-35898CRITICAL9.1An issue was discovered in the actix-utils crate before 2.0.0 for Rust. The Cell implementation allows obtaining more th...
CVE-2020-35851CRITICAL9.8HGiga MailSherlock does not validate specific parameters properly. Attackers can use the vulnerability to launch Command...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now