2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-29070 | MEDIUM | 4.8 | 1.1% | Nov 25, 2020 | osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of n... |
| CVE-2020-26243 | HIGH | 7.5 | 2.6% | Nov 25, 2020 | Nanopb is a small code-size Protocol Buffers implementation. In Nanopb before versions 0.4.4 and 0.3.9.7, decoding speci... |
| CVE-2020-26212 | MEDIUM | 6.5 | 1.2% | Nov 25, 2020 | GLPI stands for Gestionnaire Libre de Parc Informatique and it is a Free Asset and IT Management Software package, that ... |
| CVE-2020-25650 | MEDIUM | 5.5 | 0.5% | Nov 25, 2020 | A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system to the virtual machine... |
| CVE-2020-29072 | MEDIUM | 6.1 | 0.7% | Nov 25, 2020 | A Cross-Site Script Inclusion vulnerability was found on LiquidFiles before 3.3.19. This client-side attack requires use... |
| CVE-2020-29071 | CRITICAL | 9 | 1.6% | Nov 25, 2020 | An XSS issue was found in the Shares feature of LiquidFiles before 3.3.19. The issue arises from the insecure rendering ... |
| CVE-2020-26242 | HIGH | 7.5 | 1.5% | Nov 25, 2020 | Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.18, t... |
| CVE-2020-26241 | HIGH | 7.1 | 1.1% | Nov 25, 2020 | Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. This is a Consensus vulnerabilit... |
| CVE-2020-26240 | HIGH | 7.5 | 1.6% | Nov 25, 2020 | Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. An ethash mining DAG generation ... |
| CVE-2020-29069 | MEDIUM | 5.5 | 0.3% | Nov 25, 2020 | _get_flag_ip_localdb in server/mhn/ui/utils.py in Modern Honey Network (MHN) through 2020-11-23 allows attackers to caus... |
| CVE-2020-26238 | HIGH | 8.1 | 4.2% | Nov 25, 2020 | Cron-utils is a Java library to parse, validate, migrate crons as well as get human readable descriptions for them. In c... |
| CVE-2020-26237 | HIGH | 8.7 | 1.3% | Nov 24, 2020 | Highlight.js is a syntax highlighter written in JavaScript. Highlight.js versions before 9.18.2 and 10.1.2 are vulnerabl... |
| CVE-2020-26235 | MEDIUM | 5.3 | 1.9% | Nov 24, 2020 | In Rust time crate from version 0.2.7 and before version 0.2.23, unix-like operating systems may segfault due to derefer... |
| CVE-2020-29063 | HIGH | 7.5 | 0.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29062 | CRITICAL | 9.8 | 1.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29061 | CRITICAL | 9.8 | 1.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29060 | CRITICAL | 9.8 | 1.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29059 | CRITICAL | 9.8 | 1.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29058 | CRITICAL | 9.8 | 1.5% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29057 | HIGH | 7.5 | 1.9% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29056 | CRITICAL | 9.8 | 2.0% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29055 | MEDIUM | 5.9 | 0.7% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-29054 | CRITICAL | 9.8 | 1.4% | Nov 24, 2020 | An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716... |
| CVE-2020-26232 | MEDIUM | 5.4 | 0.8% | Nov 24, 2020 | Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server c... |
| CVE-2020-29053 | MEDIUM | 6.1 | 0.7% | Nov 24, 2020 | HRSALE 2.0.0 allows XSS via the admin/project/projects_calendar set_date parameter. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now