2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-27049HIGH7.8In rw_t3t_send_raw_frame of rw_t3t.cc, there is a possible out of bounds write due to a missing bounds check. This could...
CVE-2020-27048HIGH7.8In RW_SendRawFrame of rw_main.cc, there is a possible out of bounds write due to a missing bounds check. This could lead...
CVE-2020-27047MEDIUM5.5In ce_t4t_update_binary of ce_t4t.cc, there is a possible out of bounds read due to a missing bounds check. This could l...
CVE-2020-27046MEDIUM4.4In nfc_ncif_proc_ee_action of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This co...
CVE-2020-27045HIGH7.8In CE_SendRawFrame of ce_main.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead...
CVE-2020-27044HIGH7.8In restartWrite of Parcel.cpp, there is a possible memory corruption due to a use after free. This could lead to local e...
CVE-2020-27043MEDIUM4.4In nfc_enabled of nfc_main.cc, there is a possible out of bounds read due to an incorrect increment. This could lead to ...
CVE-2020-27041MEDIUM5.5In showProvisioningNotification of ConnectivityService.java, there is an unsafe PendingIntent. This could lead to local ...
CVE-2020-27040MEDIUM4.4In phNxpNciHal_core_initialized of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check....
CVE-2020-27039MEDIUM5.5In postNotification of ServiceRecord.java, there is a possible permission bypass due to an unsafe PendingIntent. This co...
CVE-2020-27038MEDIUM6.5In process of C2SoftVorbisDec.cpp, there is a possible resource exhaustion due to a memory leak. This could lead to remo...
CVE-2020-27037MEDIUM4.4In phNxpNciHal_core_initialized of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check....
CVE-2020-27036MEDIUM6.7In phNxpNciHal_send_ext_cmd of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check...
CVE-2020-25712HIGH7.8A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege e...
CVE-2020-35396MEDIUM6.1EGavilan Barcodes generator 1.0 is affected by: Cross Site Scripting (XSS) via the index.php. An Attacker is able to inj...
CVE-2020-35395MEDIUM6.1XSS in the Add Expense Component of EGavilan Media Expense Management System 1.0 allows an attacker to permanently store...
CVE-2020-28457MEDIUM4.8This affects the package s-cart/core before 4.4. The search functionality of the admin dashboard in core/src/Admin/Contr...
CVE-2020-28456MEDIUM6.1The package s-cart/core before 4.4 are vulnerable to Cross-site Scripting (XSS) via the admin panel.
CVE-2020-27035MEDIUM5.5In priorLinearAllocation of C2AllocatorIon.cpp, there is a possible use-after-free due to improper locking. This could l...
CVE-2020-27034MEDIUM5.5In createSimSelectNotification of SimSelectNotification.java, there is a possible permission bypass due to an unsafe Pen...
CVE-2020-27033MEDIUM4.4In nfc_ncif_proc_get_routing of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This ...
CVE-2020-27032MEDIUM5.5In getRadioAccessFamily of PhoneInterfaceManager.java, there is a possible read of privileged data due to a missing perm...
CVE-2020-27031MEDIUM4.4In nfc_data_event of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead ...
CVE-2020-27030HIGH7.8In onCreate of HandleApiCalls.java, there is a possible permission bypass due to a confused deputy. This could lead to l...
CVE-2020-27029MEDIUM6.5In TextView of TextView.java, there is a possible app hang due to improper input validation. This could lead to remote d...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now