2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-2279 | CRITICAL | 9.9 | 2.1% | Sep 23, 2020 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.74 and earlier allows attackers with permission to de... |
| CVE-2020-24626 | CRITICAL | 9.8 | 3.0% | Sep 23, 2020 | Unathenticated directory traversal in the ReceiverServlet class doPost() method can lead to arbitrary remote code execut... |
| CVE-2020-11856 | CRITICAL | 9.8 | 5.2% | Sep 22, 2020 | Arbitrary code execution vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. Th... |
| CVE-2020-11857 | CRITICAL | 9.8 | 15.8% | Sep 22, 2020 | An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The... |
| CVE-2020-6573 | CRITICAL | 9.6 | 1.8% | Sep 21, 2020 | Use after free in video in Google Chrome on Android prior to 85.0.4183.102 allowed a remote attacker who had compromised... |
| CVE-2020-15963 | CRITICAL | 9.6 | 1.5% | Sep 21, 2020 | Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced ... |
| CVE-2020-15961 | CRITICAL | 9.6 | 1.5% | Sep 21, 2020 | Insufficient policy validation in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a... |
| CVE-2020-25787 | CRITICAL | 9.8 | 18.4% | Sep 19, 2020 | An issue was discovered in Tiny Tiny RSS (aka tt-rss) before 2020-09-16. It does not validate all URLs before requesting... |
| CVE-2020-8158 | CRITICAL | 9.8 | 2.1% | Sep 18, 2020 | Prototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties... |
| CVE-2020-15181 | CRITICAL | 9.8 | 1.4% | Sep 18, 2020 | The Alfresco Reset Password add-on before version 1.2.0 relies on untrusted inputs in a security decision. Intruders can... |
| CVE-2020-15188 | CRITICAL | 9.8 | 5.1% | Sep 18, 2020 | SOY CMS 3.0.2.327 and earlier is affected by Unauthenticated Remote Code Execution (RCE). The allows remote attackers to... |
| CVE-2020-0354 | CRITICAL | 9.8 | 1.1% | Sep 18, 2020 | In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code exec... |
| CVE-2020-25756 | CRITICAL | 9.8 | 1.6% | Sep 18, 2020 | A buffer overflow vulnerability exists in the mg_get_http_header function in Cesanta Mongoose 6.18 due to a lack of boun... |
| CVE-2020-0333 | CRITICAL | 9.8 | 0.8% | Sep 17, 2020 | In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code execution with no ad... |
| CVE-2020-15182 | CRITICAL | 9.6 | 1.2% | Sep 17, 2020 | The SOY Inquiry component of SOY CMS is affected by Cross-site Request Forgery (CSRF) and Remote Code Execution (RCE). T... |
| CVE-2020-25216 | CRITICAL | 9.8 | 2.4% | Sep 17, 2020 | yWorks yEd Desktop before 3.20.1 allows code execution via an XSL Transformation when using an XML file in conjunction w... |
| CVE-2020-25215 | CRITICAL | 9.8 | 1.2% | Sep 17, 2020 | yWorks yEd Desktop before 3.20.1 allows XXE attacks via an XML or GraphML document. |
| CVE-2020-25489 | CRITICAL | 9.8 | 2.5% | Sep 17, 2020 | A heap overflow in Sqreen PyMiniRacer (aka Python Mini Racer) before 0.3.0 allows remote attackers to potentially exploi... |
| CVE-2020-24753 | CRITICAL | 9.8 | 2.6% | Sep 17, 2020 | A memory corruption vulnerability in Objective Open CBOR Run-time (oocborrt) in versions before 2020-08-12 could allow a... |
| CVE-2020-13169 | CRITICAL | 9 | 2.2% | Sep 17, 2020 | Stored XSS (Cross-Site Scripting) exists in the SolarWinds Orion Platform before before 2020.2.1 on multiple forms and p... |
| CVE-2020-11698 | CRITICAL | 9.8 | 73.7% | Sep 17, 2020 | An issue was discovered in Titan SpamTitan 7.07. Improper input sanitization of the parameter community on the page snmp... |
| CVE-2020-0380 | CRITICAL | 9.8 | 2.8% | Sep 17, 2020 | In allocExcessBits of bitalloc.c, there is a possible out of bounds write due to an incorrect bounds check. This could l... |
| CVE-2020-0342 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0278 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0229 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now