2020 CVE Vulnerabilities

21,071 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-15986MEDIUM6.5Integer overflow in media in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap c...
CVE-2020-15985MEDIUM6.5Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to spoof security...
CVE-2020-15984MEDIUM6.5Insufficient policy enforcement in Omnibox in Google Chrome on iOS prior to 86.0.4240.75 allowed a remote attacker to sp...
CVE-2020-15983HIGH7.8Insufficient data validation in webUI in Google Chrome on ChromeOS prior to 86.0.4240.75 allowed a local attacker to byp...
CVE-2020-15982MEDIUM6.5Inappropriate implementation in cache in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potenti...
CVE-2020-15981MEDIUM6.5Out of bounds read in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensi...
CVE-2020-15980HIGH7.8Insufficient policy enforcement in Intents in Google Chrome on Android prior to 86.0.4240.75 allowed a local attacker to...
CVE-2020-15979HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially explo...
CVE-2020-15978HIGH8.8Insufficient data validation in navigation in Google Chrome on Android prior to 86.0.4240.75 allowed a remote attacker w...
CVE-2020-15977MEDIUM6.5Insufficient data validation in dialogs in Google Chrome on OS X prior to 86.0.4240.75 allowed a remote attacker to obta...
CVE-2020-15976HIGH8.8Use after free in WebXR in Google Chrome on Android prior to 86.0.4240.75 allowed a remote attacker to potentially explo...
CVE-2020-15975HIGH8.8Integer overflow in SwiftShader in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit ...
CVE-2020-15974HIGH8.8Integer overflow in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to bypass site isolation via ...
CVE-2020-15973MEDIUM6.5Insufficient policy enforcement in extensions in Google Chrome prior to 86.0.4240.75 allowed an attacker who convinced a...
CVE-2020-15972HIGH8.8Use after free in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap cor...
CVE-2020-15971HIGH8.8Use after free in printing in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the rend...
CVE-2020-15970HIGH8.8Use after free in NFC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer ...
CVE-2020-15969HIGH8.8Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap co...
CVE-2020-15968HIGH8.8Use after free in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap cor...
CVE-2020-15967HIGH8.8Use after free in payments in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially perform a san...
CVE-2020-9861HIGH7.5A stack overflow issue existed in Swift for Linux. The issue was addressed with improved input validation for dealing wi...
CVE-2020-7758HIGH7.5This affects versions of package browserless-chrome before 1.40.2-chrome-stable. User input flowing from the workspace e...
CVE-2020-7757MEDIUM6.5This affects all versions of package droppy. It is possible to traverse directories to fetch configuration files from a ...
CVE-2020-26939MEDIUM5.3In Legion of the Bouncy Castle BC before 1.61 and BC-FJA before 1.0.1.2, attackers can obtain sensitive information abou...
CVE-2020-23989MEDIUM5.4NeDi 1.9C allows pwsec.php oid XSS.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now