2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36628CRITICAL9.8A vulnerability classified as critical has been found in Calsign APDE. This affects the function handleExtract of the fi...
CVE-2020-36627MEDIUM6.1A vulnerability was found in Macaron i18n. It has been declared as problematic. Affected by this vulnerability is an unk...
CVE-2020-26302HIGH7.5is.js is a general-purpose check library. Versions 0.9.0 and prior contain one or more regular expressions that are vuln...
CVE-2020-15685HIGH8.8During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated wi...
CVE-2020-15679HIGH7.6An OAuth session fixation vulnerability existed in the VPN login flow, where an attacker could craft a custom login URL,...
CVE-2020-36625HIGH8.8A vulnerability was found in destiny.gg chat. It has been rated as problematic. This issue affects the function websocke...
CVE-2020-36624MEDIUM6.1A vulnerability was found in ahorner text-helpers up to 1.0.x. It has been declared as critical. This vulnerability affe...
CVE-2020-36623MEDIUM6.5A vulnerability was found in Pengu. It has been declared as problematic. Affected by this vulnerability is the function ...
CVE-2020-36622MEDIUM6.5A vulnerability was found in sah-comp bienlein and classified as problematic. This issue affects some unknown processing...
CVE-2020-36621MEDIUM6.1A vulnerability, which was classified as problematic, has been found in chedabob whatismyudid. Affected by this issue is...
CVE-2020-36620HIGH7.5A vulnerability was found in Brondahl EnumStringValues up to 4.0.0. It has been declared as problematic. This vulnerabil...
CVE-2020-36619CRITICAL9.8A vulnerability was found in multimon-ng. It has been rated as critical. This issue affects the function add_ch of the f...
CVE-2020-36618CRITICAL9.8A vulnerability classified as critical has been found in Furqan node-whois. Affected is an unknown function of the file ...
CVE-2020-36617CRITICAL9.8A vulnerability was found in ewxrjk sftpserver. It has been declared as problematic. Affected by this vulnerability is t...
CVE-2020-36607MEDIUM6.1Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang at...
CVE-2020-24855MEDIUM5.3Directory Traversal vulnerability in easywebpack-cli before 4.5.2 allows attackers to obtain sensitive information via c...
CVE-2020-21219MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Netgate pf Sense 2.4.4-Release-p3 and Netgate ACME package 0.6.3 allows remo...
CVE-2020-20589MEDIUM6.1Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang at...
CVE-2020-20588HIGH8.8File upload vulnerability in function upload in action/Core.class.php in zhimengzhe iBarn 1.5 allows remote attackers to...
CVE-2020-4497MEDIUM5.9 IBM Spectrum Protect Plus 10.1.0 through 10.1.12 discloses sensitive information due to unencrypted data being used in ...
CVE-2020-9420MEDIUM6.5The login password of the web administrative dashboard in Arcadyan Wifi routers VRV9506JAC23 is sent in cleartext, allow...
CVE-2020-9419MEDIUM5.4Multiple stored cross-site scripting (XSS) vulnerabilities in Arcadyan Wifi routers VRV9506JAC23 allow remote attackers ...
CVE-2020-36610HIGH8A vulnerability was found in annyshow DuxCMS 2.1. It has been declared as problematic. This vulnerability affects unknow...
CVE-2020-36609MEDIUM5.4A vulnerability was found in annyshow DuxCMS 2.1. It has been classified as problematic. This affects an unknown part of...
CVE-2020-36565MEDIUM5.3Due to improper sanitization of user input on Windows, the static file handler allows for directory traversal, allowing ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now