2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7658 | MEDIUM | 6.1 | 0.7% | May 22, 2020 | meinheld prior to 1.0.2 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks mi... |
| CVE-2020-11077 | HIGH | 7.5 | 2.8% | May 22, 2020 | In Puma (RubyGem) before 4.3.5 and 3.12.6, a client could smuggle a request through a proxy, causing the proxy to send a... |
| CVE-2020-11076 | HIGH | 7.5 | 4.1% | May 22, 2020 | In Puma (RubyGem) before 4.3.4 and 3.12.5, an attacker could smuggle an HTTP response, by using an invalid transfer-enco... |
| CVE-2020-10711 | MEDIUM | 5.9 | 3.1% | May 22, 2020 | A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occu... |
| CVE-2020-8789 | MEDIUM | 5.4 | 0.7% | May 22, 2020 | Composr 10.0.30 allows Persistent XSS via a Usergroup name under the Security configuration. |
| CVE-2020-7813 | CRITICAL | 9.8 | 0.7% | May 22, 2020 | Ezhttptrans.ocx ActiveX Control in Kaoni ezHTTPTrans 1.0.0.70 and prior versions contain a vulnerability that could allo... |
| CVE-2020-6091 | CRITICAL | 9.1 | 2.3% | May 22, 2020 | An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN... |
| CVE-2020-1956 | HIGH | 8.8 | 98.0% | May 22, 2020 | Apache Kylin 2.3.0, and releases up to 2.6.5 and 3.0.1 has some restful apis which will concatenate os command with the ... |
| CVE-2020-3344 | MEDIUM | 5.5 | 0.3% | May 22, 2020 | A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software c... |
| CVE-2020-3343 | MEDIUM | 5.5 | 0.3% | May 22, 2020 | A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software c... |
| CVE-2020-3314 | MEDIUM | 6.1 | 0.6% | May 22, 2020 | A vulnerability in the file scan process of Cisco AMP for Endpoints Mac Connector Software could cause the scan engine t... |
| CVE-2020-3280 | CRITICAL | 9.8 | 6.9% | May 22, 2020 | A vulnerability in the Java Remote Management Interface of Cisco Unified Contact Center Express (Unified CCX) could allo... |
| CVE-2020-3272 | HIGH | 7.5 | 1.5% | May 22, 2020 | A vulnerability in the DHCP server of Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to c... |
| CVE-2020-3184 | HIGH | 7.2 | 0.9% | May 22, 2020 | A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning Software could allow an ... |
| CVE-2020-13384 | HIGH | 8.8 | 2.5% | May 22, 2020 | Monstra CMS 3.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via admin/index.php?id=file... |
| CVE-2020-1195 | LOW | 3.1 | 2.5% | May 21, 2020 | An elevation of privilege vulnerability exists in Microsoft Edge (Chromium-based) when the Feedback extension improperly... |
| CVE-2020-1192 | HIGH | 7.8 | 11.7% | May 21, 2020 | A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads workspace settings fr... |
| CVE-2020-1191 | HIGH | 7.8 | 1.5% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1190 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1189 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1188 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1187 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1186 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1185 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
| CVE-2020-1184 | HIGH | 7.8 | 0.7% | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in m... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now