2020 CVE Vulnerabilities

21,071 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-9857MEDIUM4.3An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in...
CVE-2020-9786LOW3.3This issue was addressed with improved checks This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mo...
CVE-2020-9782HIGH7.5A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m...
CVE-2020-9774HIGH7.5An issue existed with Siri Suggestions access to encrypted data. The issue was fixed by limiting access to encrypted dat...
CVE-2020-3880HIGH7.8An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 and...
CVE-2020-3864HIGH7.8A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for...
CVE-2020-3863HIGH7.8A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.3, Se...
CVE-2020-3855HIGH7.1An access issue was addressed with improved access restrictions. This issue is fixed in macOS Catalina 10.15.3, Security...
CVE-2020-3852MEDIUM5.3A logic issue was addressed with improved validation. This issue is fixed in Safari 13.0.5. A URL scheme may be incorrec...
CVE-2020-3851HIGH7.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Sec...
CVE-2020-27892HIGH7.5The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZC...
CVE-2020-27891HIGH7.5The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZC...
CVE-2020-27890HIGH8.2The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZC...
CVE-2020-27888HIGH7.5An issue was discovered on Ubiquiti UniFi Meshing Access Point UAP-AC-M 4.3.21.11325 and UniFi Controller 6.0.28 devices...
CVE-2020-27160CRITICAL9.8Addressed remote code execution vulnerability in AvailableApps.php that allowed escalation of privileges in Western Digi...
CVE-2020-27159CRITICAL9.8Addressed remote code execution vulnerability in DsdkProxy.php due to insufficient sanitization and insufficient validat...
CVE-2020-27158CRITICAL9.8Addressed remote code execution vulnerability in cgi_api.php that allowed escalation of privileges in Western Digital My...
CVE-2020-25765CRITICAL9.8Addressed remote code execution vulnerability in reg_device.php due to insufficient validation of user input.in Western ...
CVE-2020-12830CRITICAL9.8Addressed multiple stack buffer overflow vulnerabilities that could allow an attacker to carry out escalation of privile...
CVE-2020-15238HIGH7Blueman is a GTK+ Bluetooth Manager. In Blueman before 2.1.4, the DhcpClient method of the D-Bus interface to blueman-me...
CVE-2020-7755HIGH7.5All versions of package dat.gui are vulnerable to Regular Expression Denial of Service (ReDoS) via specifically crafted ...
CVE-2020-27853CRITICAL9.8Wire before 2020-10-16 allows remote attackers to cause a denial of service (application crash) or possibly execute arbi...
CVE-2020-26156Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-11858HIGH7.8Code execution with escalated privileges vulnerability in Micro Focus products Operation Bridge Manager and Operation Br...
CVE-2020-11854CRITICAL9.8Arbitrary code execution vlnerability in Operation bridge Manager, Application Performance Management and Operations Bri...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now