2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-35381HIGH7.5jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a G...
CVE-2020-35380HIGH7.5GJSON before 1.6.4 allows attackers to cause a denial of service via crafted JSON.
CVE-2020-29606Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-28072HIGH7.2A Remote Code Execution vulnerability exists in DourceCodester Alumni Management System 1.0. An authenticated attacker c...
CVE-2020-23957MEDIUM6.1Pega Platform through 8.4.x is affected by Cross Site Scripting (XSS) via the ConnectionID parameter, as demonstrated by...
CVE-2020-25759HIGH8.8An issue was discovered on D-Link DSR-250 3.17 devices. Certain functionality in the Unified Services Router web interfa...
CVE-2020-25758HIGH8.8An issue was discovered on D-Link DSR-250 3.17 devices. Insufficient validation of configuration file checksums could al...
CVE-2020-25757HIGH8.8A lack of input validation and access controls in Lua CGIs on D-Link DSR VPN routers may result in arbitrary input being...
CVE-2020-25195HIGH7.5The length of the input fields of Host Engineering H0-ECOM100, H2-ECOM100, and H4-ECOM100 modules are verified only on t...
CVE-2020-14302MEDIUM4.9A flaw was found in Keycloak before 13.0.0 where an external identity provider, after successful authentication, redirec...
CVE-2020-10770MEDIUM5.3A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using...
CVE-2020-2089Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2088Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2087Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2086Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2085Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2084Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2083Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2082Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2081Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2080Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-2079Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2020-29487HIGH7.5An issue was discovered in Xen XAPI before 2020-12-15. Certain xenstore keys provide feedback from the guest, and are th...
CVE-2020-29486MEDIUM6An issue was discovered in Xen through 4.14.x. Nodes in xenstore have an ownership. In oxenstored, a owner could give a ...
CVE-2020-29485MEDIUM5.5An issue was discovered in Xen 4.6 through 4.14.x. When acting upon a guest XS_RESET_WATCHES request, not all tracking i...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now