2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6527 | MEDIUM | 4.3 | 1.5% | Jul 22, 2020 | Insufficient policy enforcement in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass conten... |
| CVE-2020-6526 | MEDIUM | 6.5 | 1.7% | Jul 22, 2020 | Inappropriate implementation in iframe sandbox in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypas... |
| CVE-2020-6525 | HIGH | 8.8 | 1.9% | Jul 22, 2020 | Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit hea... |
| CVE-2020-6524 | HIGH | 8.8 | 2.9% | Jul 22, 2020 | Heap buffer overflow in WebAudio in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit... |
| CVE-2020-6523 | HIGH | 8.8 | 2.7% | Jul 22, 2020 | Out of bounds write in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap... |
| CVE-2020-6522 | CRITICAL | 9.6 | 1.6% | Jul 22, 2020 | Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attac... |
| CVE-2020-6521 | MEDIUM | 6.5 | 1.7% | Jul 22, 2020 | Side-channel information leakage in autofill in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to obtain ... |
| CVE-2020-6520 | HIGH | 8.8 | 2.7% | Jul 22, 2020 | Buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap cor... |
| CVE-2020-6519 | MEDIUM | 6.5 | 11.3% | Jul 22, 2020 | Policy bypass in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass content security policy ... |
| CVE-2020-6518 | HIGH | 8.8 | 2.6% | Jul 22, 2020 | Use after free in developer tools in Google Chrome prior to 84.0.4147.89 allowed a remote attacker who had convinced the... |
| CVE-2020-6517 | HIGH | 8.8 | 2.8% | Jul 22, 2020 | Heap buffer overflow in history in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit ... |
| CVE-2020-6516 | MEDIUM | 4.3 | 4.8% | Jul 22, 2020 | Policy bypass in CORS in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross-origin data via a c... |
| CVE-2020-6515 | HIGH | 8.8 | 2.5% | Jul 22, 2020 | Use after free in tab strip in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap... |
| CVE-2020-6514 | MEDIUM | 6.5 | 7.8% | Jul 22, 2020 | Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged networ... |
| CVE-2020-6513 | HIGH | 8.8 | 3.0% | Jul 22, 2020 | Heap buffer overflow in PDFium in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit h... |
| CVE-2020-6512 | HIGH | 8.8 | 3.0% | Jul 22, 2020 | Type Confusion in V8 in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corrup... |
| CVE-2020-6511 | MEDIUM | 6.5 | 1.7% | Jul 22, 2020 | Information leak in content security policy in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cro... |
| CVE-2020-6510 | HIGH | 7.8 | 1.6% | Jul 22, 2020 | Heap buffer overflow in background fetch in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially... |
| CVE-2020-6509 | CRITICAL | 9.6 | 0.8% | Jul 22, 2020 | Use after free in extensions in Google Chrome prior to 83.0.4103.116 allowed an attacker who convinced a user to install... |
| CVE-2020-6507 | HIGH | 8.8 | 19.4% | Jul 22, 2020 | Out of bounds write in V8 in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially exploit heap ... |
| CVE-2020-6506 | MEDIUM | 6.5 | 3.8% | Jul 22, 2020 | Insufficient policy enforcement in WebView in Google Chrome on Android prior to 83.0.4103.106 allowed a remote attacker ... |
| CVE-2020-6505 | CRITICAL | 9.6 | 1.0% | Jul 22, 2020 | Use after free in speech in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially perform a sand... |
| CVE-2020-8559 | MEDIUM | 6.8 | 6.1% | Jul 22, 2020 | The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.6 are vulnerable... |
| CVE-2020-12774 | MEDIUM | 6.7 | 0.4% | Jul 22, 2020 | D-Link DSL-7740C does not properly validate user input, which allows an authenticated LAN user to inject arbitrary comma... |
| CVE-2020-15890 | HIGH | 7.5 | 2.9% | Jul 21, 2020 | LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now