2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-6390HIGH8.8Out of bounds memory access in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially e...
CVE-2020-6389HIGH8.8Out of bounds write in WebRTC in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit he...
CVE-2020-6388HIGH8.8Out of bounds access in WebAudio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit...
CVE-2020-6387HIGH8.8Out of bounds write in WebRTC in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit he...
CVE-2020-6385HIGH8.8Insufficient policy enforcement in storage in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass si...
CVE-2020-6382HIGH8.8Type confusion in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit hea...
CVE-2020-6381HIGH8.8Integer overflow in JavaScript in Google Chrome on ChromeOS and Android prior to 80.0.3987.87 allowed a remote attacker ...
CVE-2020-6380HIGH8.8Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.130 allowed a remote attacker who had ...
CVE-2020-6379HIGH8.8Use after free in V8 in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap corru...
CVE-2020-6378HIGH8.8Use after free in speech in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap c...
CVE-2020-8596HIGH7.5participants-database.php in the Participants Database plugin 1.9.5.5 and previous versions for WordPress has a time-bas...
CVE-2020-7217HIGH7.5An ni_dhcp4_fsm_process_dhcp4_packet memory leak in openSUSE wicked 0.6.55 and earlier allows network attackers to cause...
CVE-2020-5529HIGH8.1HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. HtmlUnit initializes Rhino engine improperly, hence a ...
CVE-2020-3935HIGH7.5TAIWAN SECOM CO., LTD., a Door Access Control and Personnel Attendance Management system, stores users’ information by c...
CVE-2020-8841HIGH8.8An issue was discovered in TestLink 1.9.19. The relation_type parameter of the lib/requirements/reqSearch.php endpoint i...
CVE-2020-8808HIGH7.8The CorsairLLAccess64.sys and CorsairLLAccess32.sys drivers in CORSAIR iCUE before 3.25.60 allow local non-privileged us...
CVE-2020-6768HIGH7.5A path traversal vulnerability in the Bosch Video Management System (BVMS) NoTouch deployment allows an unauthenticated ...
CVE-2020-1708HIGH7It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3,...
CVE-2020-8126HIGH7.8A privilege escalation in the EdgeSwitch prior to version 1.7.1, an CGI script don't fully sanitize the user input resul...
CVE-2020-8655HIGH7.8An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability...
CVE-2020-8654HIGH8.8An issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoD...
CVE-2020-5319HIGH7.5Dell EMC Unity, Dell EMC Unity XT, and Dell EMC UnityVSA versions prior to 5.0.2.0.5.009 contain a Denial of Service vul...
CVE-2020-5318HIGH7.5Dell EMC Isilon OneFS versions 8.1.2, 8.1.0.4, 8.1.0.3, and 8.0.0.7 contain a vulnerability in some configurations. An a...
CVE-2020-7954HIGH7.8An issue was discovered in OpServices OpMon 9.3.2. Starting from the apache user account, it is possible to perform priv...
CVE-2020-7953HIGH7.5An issue was discovered in OpServices OpMon 9.3.2. Without authentication, it is possible to read server files (e.g., /e...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now