2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-23552 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e62. |
| CVE-2020-23551 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e30. |
| CVE-2020-23550 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e82. |
| CVE-2020-36603 | MEDIUM | 6.5 | 0.4% | Sep 14, 2022 | The HoYoVerse (formerly miHoYo) Genshin Impact mhyprot2.sys 1.0.0.0 anti-cheat driver does not adequately restrict unpri... |
| CVE-2020-19587 | MEDIUM | 5.4 | 0.7% | Sep 14, 2022 | Cross Site Scripting (XSS) vulnerability in configMap parameters in Yellowfin Business Intelligence 7.3 allows remote at... |
| CVE-2020-19586 | CRITICAL | 9 | 1.2% | Sep 14, 2022 | Incorrect Access Control issue in Yellowfin Business Intelligence 7.3 allows remote attackers to escalate privilege via ... |
| CVE-2020-10735 | HIGH | 7.5 | 3.2% | Sep 9, 2022 | A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"),... |
| CVE-2020-19914 | MEDIUM | 6.1 | 0.6% | Sep 7, 2022 | Cross Site Scripting (XSS) in xiunobbs 4.0.4 allows remote attackers to execute arbitrary web script or HTML via the att... |
| CVE-2020-21516 | CRITICAL | 9.8 | 1.0% | Sep 6, 2022 | There is an arbitrary file upload vulnerability in FeehiCMS 2.0.8 at the head image upload, that allows attackers to exe... |
| CVE-2020-8586 | — | — | — | Sep 6, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-29260 | HIGH | 7.5 | 0.9% | Sep 2, 2022 | libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup(). |
| CVE-2020-22669 | CRITICAL | 9.8 | 1.0% | Sep 2, 2022 | Modsecurity owasp-modsecurity-crs 3.2.0 (Paranoia level at PL1) has a SQL injection bypass vulnerability. Attackers can ... |
| CVE-2020-4301 | MEDIUM | 6.5 | 0.3% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke... |
| CVE-2020-35535 | MEDIUM | 5.5 | 0.3% | Sep 1, 2022 | In LibRaw, there is an out-of-bounds read vulnerability within the "LibRaw::parseSonySRF()" function (libraw\src\metadat... |
| CVE-2020-35534 | MEDIUM | 5.5 | 0.2% | Sep 1, 2022 | In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\cr... |
| CVE-2020-35533 | MEDIUM | 5.5 | 0.3% | Sep 1, 2022 | In LibRaw, an out-of-bounds read vulnerability exists within the "LibRaw::adobe_copy_pixel()" function (libraw\src\decod... |
| CVE-2020-35532 | MEDIUM | 5.5 | 0.4% | Sep 1, 2022 | In LibRaw, an out-of-bounds read vulnerability exists within the "simple_decode_row()" function (libraw\src\x3f\x3f_util... |
| CVE-2020-35531 | MEDIUM | 5.5 | 0.3% | Sep 1, 2022 | In LibRaw, an out-of-bounds read vulnerability exists within the get_huffman_diff() function (libraw\src\x3f\x3f_utils_p... |
| CVE-2020-35530 | MEDIUM | 5.5 | 0.4% | Sep 1, 2022 | In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patc... |
| CVE-2020-35529 | — | — | — | Sep 1, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-35528 | — | — | — | Sep 1, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-35527 | CRITICAL | 9.8 | 1.0% | Sep 1, 2022 | In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause. |
| CVE-2020-35526 | — | — | — | Sep 1, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-35525 | HIGH | 7.5 | 0.9% | Sep 1, 2022 | In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing. |
| CVE-2020-27784 | MEDIUM | 5.5 | 0.2% | Sep 1, 2022 | A vulnerability was found in the Linux kernel, where accessing a deallocated instance in printer_ioctl() printer_ioctl()... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now