2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-6527MEDIUM4.3Insufficient policy enforcement in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass conten...
CVE-2020-6526MEDIUM6.5Inappropriate implementation in iframe sandbox in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypas...
CVE-2020-6525HIGH8.8Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit hea...
CVE-2020-6524HIGH8.8Heap buffer overflow in WebAudio in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit...
CVE-2020-6523HIGH8.8Out of bounds write in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap...
CVE-2020-6522CRITICAL9.6Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attac...
CVE-2020-6521MEDIUM6.5Side-channel information leakage in autofill in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to obtain ...
CVE-2020-6520HIGH8.8Buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap cor...
CVE-2020-6519MEDIUM6.5Policy bypass in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass content security policy ...
CVE-2020-6518HIGH8.8Use after free in developer tools in Google Chrome prior to 84.0.4147.89 allowed a remote attacker who had convinced the...
CVE-2020-6517HIGH8.8Heap buffer overflow in history in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit ...
CVE-2020-6516MEDIUM4.3Policy bypass in CORS in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross-origin data via a c...
CVE-2020-6515HIGH8.8Use after free in tab strip in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap...
CVE-2020-6514MEDIUM6.5Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged networ...
CVE-2020-6513HIGH8.8Heap buffer overflow in PDFium in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit h...
CVE-2020-6512HIGH8.8Type Confusion in V8 in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corrup...
CVE-2020-6511MEDIUM6.5Information leak in content security policy in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cro...
CVE-2020-6510HIGH7.8Heap buffer overflow in background fetch in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially...
CVE-2020-6509CRITICAL9.6Use after free in extensions in Google Chrome prior to 83.0.4103.116 allowed an attacker who convinced a user to install...
CVE-2020-6507HIGH8.8Out of bounds write in V8 in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially exploit heap ...
CVE-2020-6506MEDIUM6.5Insufficient policy enforcement in WebView in Google Chrome on Android prior to 83.0.4103.106 allowed a remote attacker ...
CVE-2020-6505CRITICAL9.6Use after free in speech in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially perform a sand...
CVE-2020-8559MEDIUM6.8The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.6 are vulnerable...
CVE-2020-12774MEDIUM6.7D-Link DSL-7740C does not properly validate user input, which allows an authenticated LAN user to inject arbitrary comma...
CVE-2020-15890HIGH7.5LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now