2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-29608MEDIUM5.5An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security U...
CVE-2020-27949MEDIUM5.5This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Big Sur 11.1...
CVE-2020-27946MEDIUM5.5An information disclosure issue was addressed with improved state management. This issue is fixed in watchOS 7.2, macOS ...
CVE-2020-27937MEDIUM5.5A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2...
CVE-2020-27935MEDIUM6.3Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0....
CVE-2020-27901MEDIUM6.3A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-...
CVE-2020-27893MEDIUM6.5An issue existed in screen sharing. This issue was addressed with improved state management. This issue is fixed in macO...
CVE-2020-10008MEDIUM5.5A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.0.1. A malicious applica...
CVE-2020-10001MEDIUM5.5An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Securi...
CVE-2020-11922MEDIUM4.3An issue was discovered in WiZ Colors A60 1.14.0. The device sends unnecessary information to the cloud controller serve...
CVE-2020-19619MEDIUM5.4Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the signature field to /settings/profile.
CVE-2020-19618MEDIUM5.4Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the post content field to /post/editing.
CVE-2020-19617MEDIUM5.4Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the nickname field to /settings/profile.
CVE-2020-19616MEDIUM5.4Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the post header field to /post/editing.
CVE-2020-9149MEDIUM5.5An application error verification vulnerability exists in a component interface of Huawei Smartphone. Local attackers ca...
CVE-2020-9148MEDIUM5.5An application bypass mechanism vulnerability exists in a component interface of Huawei Smartphone. Local attackers can ...
CVE-2020-9146MEDIUM5.5A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit th...
CVE-2020-36286MEDIUM5.3The membersOf JQL search function in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before versio...
CVE-2020-36238MEDIUM5.3The /rest/api/1.0/render resource in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before versio...
CVE-2020-24550MEDIUM6.1An Open Redirect vulnerability in EpiServer Find before 13.2.7 allows an attacker to redirect users to untrusted website...
CVE-2020-4944MEDIUM5.5IBM UrbanCode Deploy (UCD) 7.0.3.0, 7.0.4.0, 7.0.5.3, 7.0.5.4, 7.1.0.0, 7.1.1.0, 7.1.1.1, and 7.1.1.2, stores keystore p...
CVE-2020-4884MEDIUM5.5IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 stores user credentials in plain in clear text which can be rea...
CVE-2020-4848MEDIUM5.4IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 could allow an authenticated user to initiate a plugin or compa...
CVE-2020-20545MEDIUM5.4Cross-Site Scripting (XSS) vulnerability in Zhiyuan G6 Government Collaboration System V6.1SP1, via the 'method' paramet...
CVE-2020-19643MEDIUM6.1Cross Site Scripting (XSS) vulnerability in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B via all fields in th...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now