2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-26828MEDIUM6.4SAP Disclosure Management, version - 10.1, provides capabilities for authorized users to upload and download content of ...
CVE-2020-26826MEDIUM6.5Process Integration Monitoring of SAP NetWeaver AS JAVA, versions - 7.31, 7.40, 7.50, allows an attacker to upload any f...
CVE-2020-26816MEDIUM4.5SAP AS JAVA (Key Storage Service), versions - 7.10, 7.11, 7.20 ,7.30, 7.31, 7.40, 7.50, has the key material which is st...
CVE-2020-26261HIGH7.9jupyterhub-systemdspawner enables JupyterHub to spawn single-user notebook servers using systemd. In jupyterhub-systemds...
CVE-2020-26260MEDIUM6.4BookStack is a platform for storing and organising information and documentation. In BookStack before version 0.30.5, a ...
CVE-2020-25199HIGH7.8A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when p...
CVE-2020-21009Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-17529CRITICAL9.8Out-of-bounds Write vulnerability in TCP Stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0....
CVE-2020-17528CRITICAL9.1Out-of-bounds Write vulnerability in TCP stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0....
CVE-2020-23520HIGH7.2imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality.
CVE-2020-7337MEDIUM6.7Incorrect Permission Assignment for Critical Resource vulnerability in McAfee VirusScan Enterprise (VSE) prior to 8.8 Pa...
CVE-2020-29657CRITICAL9.1In JerryScript 2.3.0, there is an out-of-bounds read in main_print_unhandled_exception in the main-utils.c file.
CVE-2020-29656HIGH7.5An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloa...
CVE-2020-29655HIGH7.5An injection vulnerability exists in RT-AC88U Download Master before 3.1.0.108. Accessing Main_Login.asp?flag=1&productn...
CVE-2020-29651HIGH7.5A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be u...
CVE-2020-27349MEDIUM5.5Aptdaemon performed policykit checks after interacting with potentially untrusted files with elevated privileges. This a...
CVE-2020-16128LOW3.8The aptdaemon DBus interface disclosed file existence disclosure by setting Terminal/DebconfSocket properties, aka GHSL-...
CVE-2020-26970HIGH8.8When reading SMTP server status codes, Thunderbird writes an integer value to a position on the stack that is intended t...
CVE-2020-26969HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 82. Some of these bugs showed evidence of memory corru...
CVE-2020-26968HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox ESR 78.4. Some of these bugs showed evi...
CVE-2020-26967MEDIUM6.5When listening for page changes with a Mutation Observer, a malicious web page could confuse Firefox Screenshots into in...
CVE-2020-26966MEDIUM6.5Searching for a single word from the address bar caused an mDNS request to be sent on the local network searching for a ...
CVE-2020-26965MEDIUM6.5Some websites have a feature "Show Password" where clicking a button will change a password field into a textbook field,...
CVE-2020-26964MEDIUM6.8If the Remote Debugging via USB feature was enabled in Firefox for Android on an Android version prior to Android 6.0, u...
CVE-2020-26963MEDIUM4.3Repeated calls to the history and location interfaces could have been used to hang the browser. This was addressed by in...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now