2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-29070MEDIUM4.8osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of n...
CVE-2020-26243HIGH7.5Nanopb is a small code-size Protocol Buffers implementation. In Nanopb before versions 0.4.4 and 0.3.9.7, decoding speci...
CVE-2020-26212MEDIUM6.5GLPI stands for Gestionnaire Libre de Parc Informatique and it is a Free Asset and IT Management Software package, that ...
CVE-2020-25650MEDIUM5.5A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system to the virtual machine...
CVE-2020-29072MEDIUM6.1A Cross-Site Script Inclusion vulnerability was found on LiquidFiles before 3.3.19. This client-side attack requires use...
CVE-2020-29071CRITICAL9An XSS issue was found in the Shares feature of LiquidFiles before 3.3.19. The issue arises from the insecure rendering ...
CVE-2020-26242HIGH7.5Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.18, t...
CVE-2020-26241HIGH7.1Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. This is a Consensus vulnerabilit...
CVE-2020-26240HIGH7.5Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. An ethash mining DAG generation ...
CVE-2020-29069MEDIUM5.5_get_flag_ip_localdb in server/mhn/ui/utils.py in Modern Honey Network (MHN) through 2020-11-23 allows attackers to caus...
CVE-2020-26238HIGH8.1Cron-utils is a Java library to parse, validate, migrate crons as well as get human readable descriptions for them. In c...
CVE-2020-26237HIGH8.7Highlight.js is a syntax highlighter written in JavaScript. Highlight.js versions before 9.18.2 and 10.1.2 are vulnerabl...
CVE-2020-26235MEDIUM5.3In Rust time crate from version 0.2.7 and before version 0.2.23, unix-like operating systems may segfault due to derefer...
CVE-2020-29063HIGH7.5An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29062CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29061CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29060CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29059CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29058CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29057HIGH7.5An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29056CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29055MEDIUM5.9An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-29054CRITICAL9.8An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 9716...
CVE-2020-26232MEDIUM5.4Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server c...
CVE-2020-29053MEDIUM6.1HRSALE 2.0.0 allows XSS via the admin/project/projects_calendar set_date parameter.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now