2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-5798HIGH7.8inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user fr...
CVE-2020-28727MEDIUM6.1Cross-site scripting (XSS) exists in SeedDMS 6.0.13 via the folderid parameter to views/bootstrap/class.DropFolderChoose...
CVE-2020-29573HIGH7.5sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer ov...
CVE-2020-29572MEDIUM6.1app/View/Elements/genericElements/SingleViews/Fields/genericField.ctp in MISP 2.4.135 has XSS via the authkey comment fi...
CVE-2020-28950HIGH7.8The installer of Kaspersky Anti-Ransomware Tool (KART) prior to KART 4.0 Patch C was vulnerable to a DLL hijacking attac...
CVE-2020-27773LOW3.3A flaw was found in ImageMagick in MagickCore/gem-private.h. An attacker who submits a crafted file that is processed by...
CVE-2020-27772LOW3.3A flaw was found in ImageMagick in coders/bmp.c. An attacker who submits a crafted file that is processed by ImageMagick...
CVE-2020-27776LOW3.3A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I...
CVE-2020-27775LOW3.3A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by Ima...
CVE-2020-27774LOW3.3A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I...
CVE-2020-25449MEDIUM4.8Cross Site Scripting (XSS) vulnerability in Arachnys Cabot 0.11.12 can be exploited via the Address column.
CVE-2020-25465HIGH7.5Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK bef...
CVE-2020-25464HIGH7.5Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is onl...
CVE-2020-25463HIGH7.5Invalid Memory Access in fxUTF8Decode at moddable/xs/sources/xsCommon.c:916 in Moddable SDK before OS200908 causes a den...
CVE-2020-25462CRITICAL9.8Heap buffer overflow in the fxCheckArrowFunction function at moddable/xs/sources/xsSyntaxical.c:3562 in Moddable SDK bef...
CVE-2020-25461HIGH7.5Invalid Memory Access in the fxProxyGetter function in moddable/xs/sources/xsProxy.c in Moddable SDK before OS200908 cau...
CVE-2020-27409MEDIUM6.1OpenSIS Community Edition before 7.5 is affected by a cross-site scripting (XSS) vulnerability in SideForStudent.php via...
CVE-2020-27408HIGH7.5OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow...
CVE-2020-27771LOW3.3In RestoreMSCWarning() of /coders/pdf.c there are several areas where calls to GetPixelIndex() could result in values ou...
CVE-2020-27770MEDIUM5.5Due to a missing check for 0 value of `replace_extent`, it is possible for offset `p` to overflow in SubstituteString(),...
CVE-2020-27767LOW3.3A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by Ima...
CVE-2020-27766HIGH7.8A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I...
CVE-2020-27765LOW3.3A flaw was found in ImageMagick in MagickCore/segment.c. An attacker who submits a crafted file that is processed by Ima...
CVE-2020-5675HIGH7.5Out-of-bounds read vulnerability in GT21 model of GOT2000 series (GT2107-WTBD V01.39.000 and earlier, GT2107-WTSD V01.39...
CVE-2020-29565MEDIUM6.1An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now