2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-28203 | MEDIUM | 5.5 | 1.9% | Dec 15, 2020 | An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/derefere... |
| CVE-2020-28442 | CRITICAL | 9.8 | 2.0% | Dec 15, 2020 | All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn function. |
| CVE-2020-35471 | HIGH | 7.5 | 2.4% | Dec 15, 2020 | Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet... |
| CVE-2020-35470 | HIGH | 8.8 | 1.0% | Dec 15, 2020 | Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the ... |
| CVE-2020-35460 | MEDIUM | 5.3 | 1.8% | Dec 14, 2020 | common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, l... |
| CVE-2020-35457 | HIGH | 7.8 | 0.6% | Dec 14, 2020 | GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entri... |
| CVE-2020-0456 | CRITICAL | 9.8 | 0.7% | Dec 14, 2020 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A... |
| CVE-2020-0019 | MEDIUM | 5.5 | 0.2% | Dec 14, 2020 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure i... |
| CVE-2020-0016 | HIGH | 7.8 | 0.2% | Dec 14, 2020 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege ... |
| CVE-2020-0470 | MEDIUM | 5.5 | 0.7% | Dec 14, 2020 | In extend_frame_highbd of restoration.c, there is a possible out of bounds write due to a heap buffer overflow. This cou... |
| CVE-2020-0469 | MEDIUM | 5.5 | 0.1% | Dec 14, 2020 | In addEscrowToken of LockSettingsService.java, there is a possible loss of the synthetic password due to logic error. Th... |
| CVE-2020-0468 | MEDIUM | 5.5 | 0.1% | Dec 14, 2020 | In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass of location permissi... |
| CVE-2020-0467 | MEDIUM | 5.5 | 0.2% | Dec 14, 2020 | In onUserStopped of Vpn.java, there is a possible resetting of user preferences due to a logic issue. This could lead to... |
| CVE-2020-0466 | HIGH | 7.8 | 0.3% | Dec 14, 2020 | In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This cou... |
| CVE-2020-0465 | MEDIUM | 6.8 | 0.3% | Dec 14, 2020 | In various methods of hid-multitouch.c, there is a possible out of bounds write due to a missing bounds check. This coul... |
| CVE-2020-0464 | MEDIUM | 5.5 | 0.2% | Dec 14, 2020 | In resolv_cache_lookup of res_cache.cpp, there is a possible side channel information disclosure. This could lead to loc... |
| CVE-2020-0463 | HIGH | 7.5 | 1.4% | Dec 14, 2020 | In sdp_server_handle_client_req of sdp_server.cc, there is a possible out of bounds read due to a missing bounds check. ... |
| CVE-2020-0460 | HIGH | 7.5 | 0.7% | Dec 14, 2020 | In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly installed certificates d... |
| CVE-2020-0459 | LOW | 3.3 | 0.1% | Dec 14, 2020 | In sendConfiguredNetworkChangedBroadcast of WifiConfigManager.java, there is a possible leak of sensitive WiFi configura... |
| CVE-2020-0458 | HIGH | 7.8 | 1.5% | Dec 14, 2020 | In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write ... |
| CVE-2020-0457 | CRITICAL | 9.8 | 0.7% | Dec 14, 2020 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A... |
| CVE-2020-0455 | CRITICAL | 9.8 | 0.7% | Dec 14, 2020 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A... |
| CVE-2020-0444 | HIGH | 7.8 | 0.2% | Dec 14, 2020 | In audit_free_lsm_field of auditfilter.c, there is a possible bad kfree due to a logic error in audit_data_to_entry. Thi... |
| CVE-2020-0440 | HIGH | 7.8 | 0.2% | Dec 14, 2020 | In createVirtualDisplay of DisplayManagerService.java, there is a possible way to create a trusted virtual display due t... |
| CVE-2020-0099 | HIGH | 7.8 | 0.5% | Dec 14, 2020 | In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insecure default value. T... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now