2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-10979MEDIUM4.3GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users.
CVE-2020-10978MEDIUM5.3GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private projec...
CVE-2020-10977MEDIUM5.5GitLab EE/CE 8.5 to 12.9 is vulnerable to a an path traversal when moving an issue between projects.
CVE-2020-10975MEDIUM4.3GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerabilities to unauthorized users on the vulnerability...
CVE-2020-10814MEDIUM5.5A buffer overflow vulnerability in Code::Blocks 17.12 allows an attacker to execute arbitrary code via a crafted project...
CVE-2020-11576MEDIUM5.3Fixed in v1.5.1, Argo version v1.5.0 was vulnerable to a user-enumeration vulnerability which allowed attackers to deter...
CVE-2020-10263MEDIUM6.8An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.52.4. Attackers can get root shell by accessing the UART int...
CVE-2020-10262MEDIUM6.8An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.58.10. Attackers can activate the failsafe mode during the b...
CVE-2020-11000MEDIUM6.5GreenBrowser before version 1.2 has a vulnerability where apps that rely on URL Parsing to verify that a given URL is po...
CVE-2020-11607MEDIUM5.3An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Notification exposure occurs in Lock...
CVE-2020-11601MEDIUM5.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. There is unauthorized access to appl...
CVE-2020-4291MEDIUM4.3IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could disclose sensitive information ...
CVE-2020-4290MEDIUM5.4IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow any authenticated user to...
CVE-2020-4289MEDIUM5.3IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow a remote attacker to obta...
CVE-2020-4284MEDIUM5.3IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could disclose sensitive information ...
CVE-2020-4282MEDIUM4.3IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow an authenticated user to ...
CVE-2020-4252MEDIUM5.4IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability a...
CVE-2020-5736MEDIUM6.5Amcrest cameras and NVR are vulnerable to a null pointer dereference over port 37777. An authenticated remote attacker c...
CVE-2020-10633MEDIUM6.1A non-persistent XSS (cross-site scripting) vulnerability exists in eWON Flexy and Cosy (all firmware versions prior to ...
CVE-2020-11631MEDIUM6.5An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. An error state can be generated in the CA UI by...
CVE-2020-11628MEDIUM5.3An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. It is intended to support restriction of availa...
CVE-2020-11626MEDIUM6.1An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. Two Cross Side Scripting (XSS) vulnerabilities ...
CVE-2020-9286MEDIUM6.5An improper authorization vulnerability in FortiADC may allow a remote authenticated user with low privileges to perform...
CVE-2020-6647MEDIUM5.4An improper neutralization of input vulnerability in the dashboard of FortiADC may allow an authenticated attacker to pe...
CVE-2020-11509MEDIUM6.1An XSS vulnerability in the WP Lead Plus X plugin through 0.98 for WordPress allows remote attackers to upload page temp...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now