2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-29608 | MEDIUM | 5.5 | 1.0% | Apr 2, 2021 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security U... |
| CVE-2020-27949 | MEDIUM | 5.5 | 1.0% | Apr 2, 2021 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Big Sur 11.1... |
| CVE-2020-27946 | MEDIUM | 5.5 | 0.8% | Apr 2, 2021 | An information disclosure issue was addressed with improved state management. This issue is fixed in watchOS 7.2, macOS ... |
| CVE-2020-27937 | MEDIUM | 5.5 | 1.3% | Apr 2, 2021 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2... |
| CVE-2020-27935 | MEDIUM | 6.3 | 1.7% | Apr 2, 2021 | Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.... |
| CVE-2020-27901 | MEDIUM | 6.3 | 0.6% | Apr 2, 2021 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-... |
| CVE-2020-27893 | MEDIUM | 6.5 | 0.8% | Apr 2, 2021 | An issue existed in screen sharing. This issue was addressed with improved state management. This issue is fixed in macO... |
| CVE-2020-10008 | MEDIUM | 5.5 | 1.0% | Apr 2, 2021 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.0.1. A malicious applica... |
| CVE-2020-10001 | MEDIUM | 5.5 | 1.0% | Apr 2, 2021 | An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Securi... |
| CVE-2020-11922 | MEDIUM | 4.3 | 1.1% | Apr 2, 2021 | An issue was discovered in WiZ Colors A60 1.14.0. The device sends unnecessary information to the cloud controller serve... |
| CVE-2020-19619 | MEDIUM | 5.4 | 0.6% | Apr 1, 2021 | Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the signature field to /settings/profile. |
| CVE-2020-19618 | MEDIUM | 5.4 | 0.6% | Apr 1, 2021 | Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the post content field to /post/editing. |
| CVE-2020-19617 | MEDIUM | 5.4 | 0.6% | Apr 1, 2021 | Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the nickname field to /settings/profile. |
| CVE-2020-19616 | MEDIUM | 5.4 | 0.6% | Apr 1, 2021 | Cross Site Scripting (XSS) vulnerability in mblog 3.5 via the post header field to /post/editing. |
| CVE-2020-9149 | MEDIUM | 5.5 | 0.2% | Apr 1, 2021 | An application error verification vulnerability exists in a component interface of Huawei Smartphone. Local attackers ca... |
| CVE-2020-9148 | MEDIUM | 5.5 | 0.2% | Apr 1, 2021 | An application bypass mechanism vulnerability exists in a component interface of Huawei Smartphone. Local attackers can ... |
| CVE-2020-9146 | MEDIUM | 5.5 | 0.1% | Apr 1, 2021 | A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit th... |
| CVE-2020-36286 | MEDIUM | 5.3 | 1.4% | Apr 1, 2021 | The membersOf JQL search function in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before versio... |
| CVE-2020-36238 | MEDIUM | 5.3 | 1.6% | Apr 1, 2021 | The /rest/api/1.0/render resource in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before versio... |
| CVE-2020-24550 | MEDIUM | 6.1 | 4.7% | Mar 31, 2021 | An Open Redirect vulnerability in EpiServer Find before 13.2.7 allows an attacker to redirect users to untrusted website... |
| CVE-2020-4944 | MEDIUM | 5.5 | 0.2% | Mar 30, 2021 | IBM UrbanCode Deploy (UCD) 7.0.3.0, 7.0.4.0, 7.0.5.3, 7.0.5.4, 7.1.0.0, 7.1.1.0, 7.1.1.1, and 7.1.1.2, stores keystore p... |
| CVE-2020-4884 | MEDIUM | 5.5 | 0.2% | Mar 30, 2021 | IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 stores user credentials in plain in clear text which can be rea... |
| CVE-2020-4848 | MEDIUM | 5.4 | 0.6% | Mar 30, 2021 | IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 could allow an authenticated user to initiate a plugin or compa... |
| CVE-2020-20545 | MEDIUM | 5.4 | 0.6% | Mar 30, 2021 | Cross-Site Scripting (XSS) vulnerability in Zhiyuan G6 Government Collaboration System V6.1SP1, via the 'method' paramet... |
| CVE-2020-19643 | MEDIUM | 6.1 | 0.7% | Mar 30, 2021 | Cross Site Scripting (XSS) vulnerability in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B via all fields in th... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now