2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36756 | MEDIUM | 4.3 | 0.4% | Jul 12, 2023 | The 10WebAnalytics plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.... |
| CVE-2020-36752 | MEDIUM | 4.3 | 0.4% | Jul 12, 2023 | The Coming Soon & Maintenance Mode Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up ... |
| CVE-2020-36750 | MEDIUM | 4.3 | 0.3% | Jul 12, 2023 | The EWWW Image Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi... |
| CVE-2020-20118 | MEDIUM | 5.5 | 0.2% | Jul 11, 2023 | Buffer Overflow vulnerability in Avast AntiVirus before v.19.7 allows a local attacker to cause a denial of service via ... |
| CVE-2020-8934 | MEDIUM | 4.3 | 0.2% | Jul 7, 2023 | The Site Kit by Google plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and inc... |
| CVE-2020-22336 | CRITICAL | 9.8 | 1.1% | Jul 6, 2023 | An issue was discovered in pdfcrack 0.17 thru 0.18, allows attackers to execute arbitrary code via a stack overflow in t... |
| CVE-2020-21862 | HIGH | 8.1 | 0.8% | Jul 6, 2023 | Directory traversal vulnerability in DuxCMS 2.1 allows attackers to delete arbitrary files via /admin/AdminBackup/del. |
| CVE-2020-21861 | HIGH | 8.8 | 0.6% | Jul 6, 2023 | File upload vulnerability in DuxCMS 2.1 allows attackers to execute arbitrary php code via duxcms/AdminUpload/upload. |
| CVE-2020-23452 | MEDIUM | 6.1 | 0.4% | Jul 5, 2023 | A cross-site scripting (XSS) vulnerability in Selenium Grid v3.141.59 allows attackers to execute arbitrary web scripts ... |
| CVE-2020-25969 | CRITICAL | 9.8 | 0.9% | Jul 5, 2023 | gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest(). |
| CVE-2020-22597 | CRITICAL | 9.8 | 1.1% | Jul 3, 2023 | An issue in Jerrscript- project Jerryscrip v. 2.3.0 allows a remote attacker to execute arbitrary code via the ecma_buil... |
| CVE-2020-22153 | CRITICAL | 9.8 | 1.2% | Jul 3, 2023 | File Upload vulnerability in FUEL-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted .php file... |
| CVE-2020-22152 | MEDIUM | 5.4 | 0.5% | Jul 3, 2023 | Cross Site Scripting vulnerability in daylight studio FUEL- CMS v.1.4.6 allows a remote attacker to execute arbitrary co... |
| CVE-2020-22151 | CRITICAL | 9.8 | 1.2% | Jul 3, 2023 | Permissions vulnerability in Fuel-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted zip file ... |
| CVE-2020-15730 | — | — | — | Jul 2, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2020-36749 | MEDIUM | 4.3 | 0.4% | Jul 1, 2023 | The Easy Testimonials plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,... |
| CVE-2020-36748 | MEDIUM | 4.3 | 0.4% | Jul 1, 2023 | The Dokan plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0.8. This... |
| CVE-2020-36747 | MEDIUM | 4.3 | 0.4% | Jul 1, 2023 | The Lightweight Sidebar Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and ... |
| CVE-2020-36746 | MEDIUM | 4.3 | 0.4% | Jul 1, 2023 | The Menu Swapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.... |
| CVE-2020-36745 | HIGH | 8.8 | 0.4% | Jul 1, 2023 | The WP Project Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including... |
| CVE-2020-36744 | MEDIUM | 4.3 | 0.3% | Jul 1, 2023 | The NotificationX plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8... |
| CVE-2020-36743 | MEDIUM | 4.3 | 0.3% | Jul 1, 2023 | The Product Catalog Simple plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu... |
| CVE-2020-36742 | MEDIUM | 4.3 | 0.3% | Jul 1, 2023 | The Custom Field Template plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ... |
| CVE-2020-36741 | MEDIUM | 4.3 | 0.3% | Jul 1, 2023 | The MultiVendorX plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.5.... |
| CVE-2020-36740 | HIGH | 8.8 | 0.4% | Jul 1, 2023 | The Radio Buttons for Taxonomies plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now