2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-2254MEDIUM6.5Jenkins Blue Ocean Plugin 1.23.2 and earlier provides an undocumented feature flag that, when enabled, allows an attacke...
CVE-2020-2253MEDIUM4.8Jenkins Email Extension Plugin 2.75 and earlier does not perform hostname validation when connecting to the configured S...
CVE-2020-2252MEDIUM4.8Jenkins Mailer Plugin 1.32 and earlier does not perform hostname validation when connecting to the configured SMTP serve...
CVE-2020-25412CRITICAL9.8com_line() in command.c in gnuplot 5.4 leads to an out-of-bounds-write from strncpy() that may lead to arbitrary code ex...
CVE-2020-14393HIGH7.1A buffer overflow was found in perl-DBI < 1.643 in DBI.xs. A local attacker who is able to supply a string longer than 3...
CVE-2020-14315CRITICAL9.8A memory corruption vulnerability is present in bspatch as shipped in Colin Percival’s bsdiff tools version 4.3. Insuffi...
CVE-2020-25559HIGH7.8gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary c...
CVE-2020-14392MEDIUM5.5An untrusted pointer dereference flaw was found in Perl-DBI < 1.643. A local attacker who is able to manipulate calls to...
CVE-2020-14386HIGH7.8A flaw was found in the Linux kernel before 5.9-rc4. Memory corruption can be exploited to gain root privileges from unp...
CVE-2020-10781MEDIUM5.5A flaw was found in the Linux Kernel before 5.8-rc6 in the ZRAM kernel module, where a user with a local account and the...
CVE-2020-7268MEDIUM4.3Path Traversal vulnerability in McAfee McAfee Email Gateway (MEG) prior to 7.6.406 allows remote attackers to traverse t...
CVE-2020-7297MEDIUM5.7Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user t...
CVE-2020-10768MEDIUM5.5A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect bra...
CVE-2020-7296MEDIUM5.7Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user t...
CVE-2020-7295MEDIUM4.6Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user t...
CVE-2020-7294MEDIUM4.6Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user t...
CVE-2020-7293CRITICAL9Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user w...
CVE-2020-10767MEDIUM5.5A flaw was found in the Linux kernel before 5.8-rc1 in the implementation of the Enhanced IBPB (Indirect Branch Predicti...
CVE-2020-10766MEDIUM5.5A logic bug flaw was found in Linux kernel before 5.8-rc1 in the implementation of SSBD. A bug in the logic handling all...
CVE-2020-25453HIGH8.8An issue was discovered in BlackCat CMS before 1.4. There is a CSRF vulnerability (bypass csrf_token) that allows remote...
CVE-2020-23833CRITICAL9.8Projectworlds House Rental v1.0 suffers from an unauthenticated SQL Injection vulnerability, allowing remote attackers t...
CVE-2020-23828CRITICAL9.8A File Upload vulnerability in SourceCodester Online Course Registration v1.0 allows remote attackers to achieve Remote ...
CVE-2020-14385MEDIUM5.5A flaw was found in the Linux kernel before 5.9-rc4. A failure of the file system metadata validator in XFS can cause an...
CVE-2020-24561CRITICAL9.1A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrar...
CVE-2020-14314MEDIUM5.5A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now