2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27839 | MEDIUM | 5.4 | 2.4% | May 26, 2021 | A flaw was found in ceph-dashboard. The JSON Web Token (JWT) used for user authentication is stored by the frontend appl... |
| CVE-2020-25724 | MEDIUM | 4.3 | 0.6% | May 26, 2021 | A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker t... |
| CVE-2020-25634 | MEDIUM | 5.4 | 0.5% | May 26, 2021 | A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attac... |
| CVE-2020-22028 | MEDIUM | 6.5 | 1.7% | May 26, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause... |
| CVE-2020-22026 | MEDIUM | 6.5 | 1.4% | May 26, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could... |
| CVE-2020-22024 | MEDIUM | 6.5 | 1.0% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a... |
| CVE-2020-22021 | MEDIUM | 6.5 | 1.7% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote... |
| CVE-2020-22020 | MEDIUM | 6.5 | 1.5% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could l... |
| CVE-2020-22019 | MEDIUM | 6.5 | 1.1% | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a rem... |
| CVE-2020-18221 | MEDIUM | 6.1 | 1.2% | May 26, 2021 | Cross Site Scripting (XSS) in Typora v0.9.65 and earlier allows remote attackers to execute arbitrary code by injecting ... |
| CVE-2020-26680 | MEDIUM | 5.4 | 0.5% | May 26, 2021 | In vFairs 3.3, any user logged in to a vFairs virtual conference or event can modify any other users profile information... |
| CVE-2020-26679 | MEDIUM | 4.3 | 0.8% | May 26, 2021 | vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference or event can modify an... |
| CVE-2020-25673 | MEDIUM | 5.5 | 0.5% | May 26, 2021 | A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually ... |
| CVE-2020-20453 | MEDIUM | 6.5 | 1.8% | May 25, 2021 | FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause ... |
| CVE-2020-20448 | MEDIUM | 6.5 | 0.9% | May 25, 2021 | FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to... |
| CVE-2020-20446 | MEDIUM | 6.5 | 1.7% | May 25, 2021 | FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause ... |
| CVE-2020-20445 | MEDIUM | 6.5 | 1.6% | May 25, 2021 | FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a D... |
| CVE-2020-4839 | MEDIUM | 4.9 | 1.5% | May 25, 2021 | IBM Host firmware for LC-class Systems is vulnerable to a stack based buffer overflow, caused by improper bounds checkin... |
| CVE-2020-13602 | MEDIUM | 5.5 | 0.3% | May 25, 2021 | Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation... |
| CVE-2020-10072 | MEDIUM | 5.3 | 0.2% | May 25, 2021 | Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Imp... |
| CVE-2020-10069 | MEDIUM | 6.5 | 0.4% | May 25, 2021 | Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Impro... |
| CVE-2020-10066 | MEDIUM | 5.7 | 0.2% | May 25, 2021 | Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (... |
| CVE-2020-9451 | MEDIUM | 5.5 | 0.4% | May 25, 2021 | An issue was discovered in Acronis True Image 2020 24.5.22510. anti_ransomware_service.exe keeps a log in a folder where... |
| CVE-2020-26558 | MEDIUM | 4.2 | 0.9% | May 24, 2021 | Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-mi... |
| CVE-2020-26555 | MEDIUM | 5.4 | 0.9% | May 24, 2021 | Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now