2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-27839MEDIUM5.4A flaw was found in ceph-dashboard. The JSON Web Token (JWT) used for user authentication is stored by the frontend appl...
CVE-2020-25724MEDIUM4.3A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker t...
CVE-2020-25634MEDIUM5.4A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attac...
CVE-2020-22028MEDIUM6.5Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause...
CVE-2020-22026MEDIUM6.5Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could...
CVE-2020-22024MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a...
CVE-2020-22021MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote...
CVE-2020-22020MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could l...
CVE-2020-22019MEDIUM6.5Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a rem...
CVE-2020-18221MEDIUM6.1Cross Site Scripting (XSS) in Typora v0.9.65 and earlier allows remote attackers to execute arbitrary code by injecting ...
CVE-2020-26680MEDIUM5.4In vFairs 3.3, any user logged in to a vFairs virtual conference or event can modify any other users profile information...
CVE-2020-26679MEDIUM4.3vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference or event can modify an...
CVE-2020-25673MEDIUM5.5A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually ...
CVE-2020-20453MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause ...
CVE-2020-20448MEDIUM6.5FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to...
CVE-2020-20446MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause ...
CVE-2020-20445MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a D...
CVE-2020-4839MEDIUM4.9IBM Host firmware for LC-class Systems is vulnerable to a stack based buffer overflow, caused by improper bounds checkin...
CVE-2020-13602MEDIUM5.5Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation...
CVE-2020-10072MEDIUM5.3Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Imp...
CVE-2020-10069MEDIUM6.5Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Impro...
CVE-2020-10066MEDIUM5.7Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (...
CVE-2020-9451MEDIUM5.5An issue was discovered in Acronis True Image 2020 24.5.22510. anti_ransomware_service.exe keeps a log in a folder where...
CVE-2020-26558MEDIUM4.2Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-mi...
CVE-2020-26555MEDIUM5.4Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now