2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-4076 | CRITICAL | 9 | 0.4% | Jul 7, 2020 | In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass. Code running in the mai... |
| CVE-2020-4075 | HIGH | 7.5 | 1.2% | Jul 7, 2020 | In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, arbitrary local file read is possible by defining unsafe win... |
| CVE-2020-15096 | MEDIUM | 6.8 | 0.8% | Jul 7, 2020 | In Electron before versions 6.1.1, 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass, meaning that cod... |
| CVE-2020-9395 | HIGH | 8 | 0.8% | Jul 6, 2020 | An issue was discovered on Realtek RTL8195AM, RTL8711AM, RTL8711AF, and RTL8710AF devices before 2.0.6. A stack-based bu... |
| CVE-2020-9262 | HIGH | 7.8 | 0.8% | Jul 6, 2020 | HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condit... |
| CVE-2020-9261 | HIGH | 7.8 | 0.8% | Jul 6, 2020 | HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability. The system does n... |
| CVE-2020-9226 | MEDIUM | 5.5 | 0.4% | Jul 6, 2020 | HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. Th... |
| CVE-2020-1839 | MEDIUM | 6.3 | 0.2% | Jul 6, 2020 | HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing... |
| CVE-2020-1838 | MEDIUM | 5.5 | 0.2% | Jul 6, 2020 | HUAWEI Mate 30 Pro with versions earlier than 10.1.0.150(C00E136R5P3) have is an improper authentication vulnerability. ... |
| CVE-2020-1836 | MEDIUM | 5.3 | 0.3% | Jul 6, 2020 | HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) and HUAWEI P30 Pro with versions earlier than 10.1.0.160(... |
| CVE-2020-10760 | MEDIUM | 6.5 | 2.7% | Jul 6, 2020 | A use-after-free flaw was found in all samba LDAP server versions before 4.10.17, before 4.11.11, before 4.12.4 used in ... |
| CVE-2020-9100 | HIGH | 7.8 | 0.4% | Jul 6, 2020 | Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is lo... |
| CVE-2020-6013 | HIGH | 8.8 | 1.6% | Jul 6, 2020 | ZoneAlarm Firewall and Antivirus products before version 15.8.109.18436 allow an attacker who already has access to the ... |
| CVE-2020-5372 | HIGH | 7.5 | 0.9% | Jul 6, 2020 | Dell EMC PowerStore versions prior to 1.0.1.0.5.002 contain a vulnerability that exposes test interface ports to externa... |
| CVE-2020-5371 | HIGH | 8.8 | 1.2% | Jul 6, 2020 | Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale version 9.0.0 contain a file permissions vulner... |
| CVE-2020-5368 | HIGH | 7.5 | 1.5% | Jul 6, 2020 | Dell EMC VxRail versions 4.7.410 and 4.7.411 contain an improper authentication vulnerability. A remote unauthenticated ... |
| CVE-2020-5356 | MEDIUM | 6.5 | 1.3% | Jul 6, 2020 | Dell PowerProtect Data Manager (PPDM) versions prior to 19.4 and Dell PowerProtect X400 versions prior to 3.2 contain an... |
| CVE-2020-5352 | HIGH | 8.8 | 2.9% | Jul 6, 2020 | Dell EMC Data Protection Advisor 6.4, 6.5 and 18.1 contain an OS command injection vulnerability. A remote authenticated... |
| CVE-2020-1837 | MEDIUM | 5.3 | 0.3% | Jul 6, 2020 | ChangXiang 8 Plus with versions earlier than 9.1.0.136(C00E121R1P6T8) have a denial of service vulnerability. The device... |
| CVE-2020-14303 | HIGH | 7.5 | 3.5% | Jul 6, 2020 | A flaw was found in the AD DC NBT server in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4. A samba... |
| CVE-2020-15570 | MEDIUM | 5.5 | 1.1% | Jul 6, 2020 | The parse_report() function in whoopsie.c in Whoopsie through 0.2.69 mishandles memory allocation failures, which allows... |
| CVE-2020-15569 | MEDIUM | 5.5 | 0.7% | Jul 6, 2020 | PlayerGeneric.cpp in MilkyTracker through 1.02.00 has a use-after-free in the PlayerGeneric destructor. |
| CVE-2020-7691 | MEDIUM | 6.1 | 1.8% | Jul 6, 2020 | In all versions of the package jspdf, it is possible to use <<script>script> in order to go over the filtering regex. |
| CVE-2020-7690 | MEDIUM | 6.1 | 1.0% | Jul 6, 2020 | All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS). It is possible to inject Jav... |
| CVE-2020-15562 | MEDIUM | 6.1 | 2.1% | Jul 6, 2020 | An issue was discovered in Roundcube Webmail before 1.2.11, 1.3.x before 1.3.14, and 1.4.x before 1.4.7. It allows XSS v... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now