2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0552Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-0509Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-22647CRITICAL9.1An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdr...
CVE-2020-19947CRITICAL9.6Cross Site Scripting vulnerability found in Markdown Edit allows a remote attacker to execute arbitrary code via the edi...
CVE-2020-27507CRITICAL9.8The Kamailio SIP before 5.5.0 server mishandles INVITE requests with duplicated fields and overlength tag, leading to a ...
CVE-2020-4927HIGH8.2A vulnerability in the Spectrum Scale 5.0.5.0 through 5.1.6.1 core component could allow unauthorized access to user dat...
CVE-2020-4556LOW3.3IBM Financial Transaction Manager for High Value Payments for Multi-Platform 3.2.0 through 3.2.10 allows web pages to be...
CVE-2020-5002HIGH8.8IBM Financial Transaction Manager 3.2.0 through 3.2.10 could allow an authenticated user to perform unauthorized actions...
CVE-2020-36670MEDIUM6.3The NEX-Forms. plugin for WordPress is vulnerable to unauthorized disclosure and modification of data in versions up to,...
CVE-2020-36669HIGH8.8The JetBackup – WP Backup, Migrate & Restore plugin for WordPress is vulnerable to Cross-Site Request Forgery in version...
CVE-2020-36668MEDIUM4.3The JetBackup – WP Backup, Migrate & Restore plugin for WordPress is vulnerable to sensitive information disclosure in v...
CVE-2020-36667MEDIUM5.4The JetBackup – WP Backup, Migrate & Restore plugin for WordPress is vulnerable to unauthorized back-up location changes...
CVE-2020-36665MEDIUM6.1A vulnerability was found in Artesãos SEOTools up to 0.17.1 and classified as critical. This issue affects the function ...
CVE-2020-36664MEDIUM6.1A vulnerability has been found in Artesãos SEOTools up to 0.17.1 and classified as problematic. This vulnerability affec...
CVE-2020-36663MEDIUM6.1A vulnerability, which was classified as problematic, was found in Artesãos SEOTools up to 0.17.1. This affects the func...
CVE-2020-5026HIGH7.5IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.7 could allow a remote attac...
CVE-2020-5001HIGH7.5 IBM Financial Transaction Manager 3.2.0 through 3.2.7 could allow a remote attacker to traverse directories on the syst...
CVE-2020-36652HIGH7.1Incorrect Default Permissions vulnerability in Hitachi Automation Director on Linux, Hitachi Infrastructure Analytics Ad...
CVE-2020-9846MEDIUM5.3A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1. A malicious ap...
CVE-2020-36656MEDIUM5.4The Spectra WordPress plugin before 1.15.0 does not sanitize user input as it reaches its style HTML attribute, allowing...
CVE-2020-19824HIGH7An issue in MPV v.0.29.1 fixed in v0.30 allows attackers to execute arbitrary code and crash program via the ao_c parame...
CVE-2020-29168CRITICAL9.8SQL Injection vulnerability in Projectworlds Online Doctor Appointment Booking System, allows attackers to gain sensitiv...
CVE-2020-6817HIGH7.5bleach.clean behavior parsing style attributes could result in a regular expression denial of service (ReDoS). Calls to ...
CVE-2020-12413MEDIUM5.9The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerabili...
CVE-2020-21120CRITICAL9.8SQL Injection vulnerability in file home\controls\cart.class.php in UQCMS 2.1.3, allows attackers execute arbitrary comm...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now