2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-35921 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the miow crate before 0.3.6 for Rust. It has false expectations about the std::net::SocketAdd... |
| CVE-2020-35920 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the socket2 crate before 0.3.16 for Rust. It has false expectations about the std::net::Socke... |
| CVE-2020-35919 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the net2 crate before 0.2.36 for Rust. It has false expectations about the std::net::SocketAd... |
| CVE-2020-35918 | MEDIUM | 5.5 | 0.5% | Dec 31, 2020 | An issue was discovered in the branca crate before 0.10.0 for Rust. Decoding tokens (with invalid base62 data) can panic... |
| CVE-2020-35917 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the pyo3 crate before 0.12.4 for Rust. There is a reference-counting error and use-after-free... |
| CVE-2020-35916 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the image crate before 0.23.12 for Rust. A Mutable reference has immutable provenance. (In th... |
| CVE-2020-35915 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the futures-intrusive crate before 0.4.0 for Rust. GenericMutexGuard allows cross-thread data... |
| CVE-2020-35914 | MEDIUM | 4.7 | 0.2% | Dec 31, 2020 | An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of RwLockWriteGuard u... |
| CVE-2020-35913 | MEDIUM | 4.7 | 0.2% | Dec 31, 2020 | An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of RwLockReadGuard un... |
| CVE-2020-35912 | MEDIUM | 4.7 | 0.2% | Dec 31, 2020 | An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedRwLockWriteG... |
| CVE-2020-35911 | MEDIUM | 4.7 | 0.2% | Dec 31, 2020 | An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedRwLockReadGu... |
| CVE-2020-35910 | MEDIUM | 5.5 | 0.3% | Dec 31, 2020 | An issue was discovered in the lock_api crate before 0.4.2 for Rust. A data race can occur because of MappedMutexGuard u... |
| CVE-2020-35909 | HIGH | 7.5 | 1.4% | Dec 31, 2020 | An issue was discovered in the multihash crate before 0.11.3 for Rust. The from_slice parsing code can panic via unsanit... |
| CVE-2020-35908 | MEDIUM | 5.5 | 0.3% | Dec 31, 2020 | An issue was discovered in the futures-util crate before 0.3.2 for Rust. FuturesUnordered can lead to data corruption be... |
| CVE-2020-35907 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the futures-task crate before 0.3.5 for Rust. futures_task::noop_waker_ref allows a NULL poin... |
| CVE-2020-35906 | HIGH | 7.8 | 0.5% | Dec 31, 2020 | An issue was discovered in the futures-task crate before 0.3.6 for Rust. futures_task::waker may cause a use-after-free ... |
| CVE-2020-35905 | MEDIUM | 4.7 | 0.3% | Dec 31, 2020 | An issue was discovered in the futures-util crate before 0.3.7 for Rust. MutexGuard::map can cause a data race for certa... |
| CVE-2020-35904 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the crossbeam-channel crate before 0.4.4 for Rust. It has incorrect expectations about the re... |
| CVE-2020-35903 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the dync crate before 0.5.0 for Rust. VecCopy allows misaligned element access because u8 is ... |
| CVE-2020-35902 | CRITICAL | 9.8 | 1.6% | Dec 31, 2020 | An issue was discovered in the actix-codec crate before 0.3.0-beta.1 for Rust. There is a use-after-free in Framed. |
| CVE-2020-35901 | HIGH | 7.5 | 1.4% | Dec 31, 2020 | An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream. |
| CVE-2020-35900 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the array-queue crate through 2020-09-26 for Rust. A pop_back() call may lead to a use-after-... |
| CVE-2020-35899 | MEDIUM | 5.5 | 0.4% | Dec 31, 2020 | An issue was discovered in the actix-service crate before 1.0.6 for Rust. The Cell implementation allows obtaining more ... |
| CVE-2020-35898 | CRITICAL | 9.1 | 1.4% | Dec 31, 2020 | An issue was discovered in the actix-utils crate before 2.0.0 for Rust. The Cell implementation allows obtaining more th... |
| CVE-2020-35851 | CRITICAL | 9.8 | 1.7% | Dec 31, 2020 | HGiga MailSherlock does not validate specific parameters properly. Attackers can use the vulnerability to launch Command... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now