2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3803 | HIGH | 7.8 | 0.8% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3802 | HIGH | 8.8 | 4.5% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3801 | CRITICAL | 9.8 | 4.8% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3800 | HIGH | 7.5 | 2.9% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3766 | HIGH | 7.8 | 0.9% | Mar 25, 2020 | Adobe Genuine Integrity Service versions Version 6.4 and earlier have an insecure file permissions vulnerability. Succes... |
| CVE-2020-2171 | HIGH | 8.8 | 1.1% | Mar 25, 2020 | Jenkins RapidDeploy Plugin 4.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attack... |
| CVE-2020-2170 | MEDIUM | 5.4 | 0.7% | Mar 25, 2020 | Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package names in the table of packages obtained from a remote... |
| CVE-2020-2169 | MEDIUM | 6.1 | 1.0% | Mar 25, 2020 | A form validation endpoint in Jenkins Queue cleanup Plugin 1.3 and earlier does not properly escape a query parameter di... |
| CVE-2020-2168 | HIGH | 8.8 | 2.0% | Mar 25, 2020 | Jenkins Azure Container Service Plugin 1.0.1 and earlier does not configure its YAML parser to prevent the instantiation... |
| CVE-2020-2167 | HIGH | 8.8 | 2.1% | Mar 25, 2020 | Jenkins OpenShift Pipeline Plugin 1.0.56 and earlier does not configure its YAML parser to prevent the instantiation of ... |
| CVE-2020-2166 | HIGH | 8.8 | 2.0% | Mar 25, 2020 | Jenkins Pipeline: AWS Steps Plugin 1.40 and earlier does not configure its YAML parser to prevent the instantiation of a... |
| CVE-2020-2165 | HIGH | 7.5 | 1.1% | Mar 25, 2020 | Jenkins Artifactory Plugin 3.6.0 and earlier transmits configured passwords in plain text as part of its global Jenkins ... |
| CVE-2020-2164 | MEDIUM | 6.5 | 0.8% | Mar 25, 2020 | Jenkins Artifactory Plugin 3.5.0 and earlier stores its Artifactory server password unencrypted in its global configurat... |
| CVE-2020-2163 | MEDIUM | 5.4 | 1.2% | Mar 25, 2020 | Jenkins 2.227 and earlier, LTS 2.204.5 and earlier improperly processes HTML content of list view column headers, result... |
| CVE-2020-2162 | MEDIUM | 5.4 | 1.2% | Mar 25, 2020 | Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Content-Security-Policy headers for files uploaded as fi... |
| CVE-2020-2161 | MEDIUM | 5.4 | 1.2% | Mar 25, 2020 | Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not properly escape node labels that are shown in the form valid... |
| CVE-2020-2160 | HIGH | 8.8 | 2.0% | Mar 25, 2020 | Jenkins 2.227 and earlier, LTS 2.204.5 and earlier uses different representations of request URL paths, which allows att... |
| CVE-2020-10649 | HIGH | 7.8 | 0.6% | Mar 25, 2020 | DevActSvc.exe in ASUS Device Activation before 1.0.7.0 for Windows 10 notebooks and PCs could lead to unsigned code exec... |
| CVE-2020-3799 | CRITICAL | 9.8 | 6.3% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3797 | CRITICAL | 9.8 | 3.9% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3795 | CRITICAL | 9.8 | 4.2% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3793 | CRITICAL | 9.8 | 4.9% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-3792 | CRITICAL | 9.8 | 4.9% | Mar 25, 2020 | Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 20... |
| CVE-2020-1957 | CRITICAL | 9.8 | 24.2% | Mar 25, 2020 | Apache Shiro before 1.5.2, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may caus... |
| CVE-2020-9375 | HIGH | 7.5 | 28.2% | Mar 25, 2020 | TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now