2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0060MEDIUM4.4In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection. This c...
CVE-2020-0059MEDIUM5.5In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a...
CVE-2020-0058MEDIUM4.4In l2c_rcv_acl_data of l2c_main.cc, there is a possible out of bounds read due to an incorrect bounds check. This could ...
CVE-2020-0044MEDIUM4.4In set_nonce of fpc_ta_qc_auth.c, there is a possible out of bounds read due to a missing bounds check. This could lead ...
CVE-2020-0043MEDIUM4.4In authorize_enrol of fpc_ta_hw_auth.c, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2020-0042MEDIUM4.4In fpc_ta_hw_auth_unwrap_key of fpc_ta_hw_auth_qsee.c, there is a possible out of bounds read due to a missing bounds ch...
CVE-2020-0041HIGH7.8In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could ...
CVE-2020-0039HIGH7.5In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missing bounds check. Thi...
CVE-2020-0038HIGH7.5In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missing bounds check. Thi...
CVE-2020-0037HIGH7.5In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds read due to a missing bounds check. This coul...
CVE-2020-0036HIGH7.8In hasPermissions of PermissionMonitor.java, there is a possible access to restricted permissions due to a permissions b...
CVE-2020-0035MEDIUM5.5In query of TelephonyProvider.java, there is a possible access to SIM card info due to a missing permission check. This ...
CVE-2020-0034HIGH7.5In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This coul...
CVE-2020-0033HIGH7.8In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could l...
CVE-2020-0032HIGH8.8In ih264d_release_display_bufs of ih264d_utils.c, there is a possible out of bounds write due to a heap buffer overflow....
CVE-2020-0031MEDIUM5In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to displa...
CVE-2020-0029LOW2.3In the WifiConfigManager, there is a possible storage of location history which can only be deleted by triggering a fact...
CVE-2020-0012MEDIUM6.7In fpc_ta_pn_get_unencrypted_image of fpc_ta_pn.c, there is a possible out of bounds write due to a missing bounds check...
CVE-2020-0011MEDIUM6.7In get_auth_result of fpc_ta_hw_auth.c, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2020-0010MEDIUM6.7In fpc_ta_get_build_info of fpc_ta_kpi.c, there is a possible out of bounds write due to a missing bounds check. This co...
CVE-2020-5259HIGH8.6In affected versions of dojox (NPM package), the jqMix method is vulnerable to Prototype Pollution. Prototype Pollution ...
CVE-2020-5258HIGH7.7In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollutio...
CVE-2020-9440MEDIUM6.1A cross-site scripting (XSS) vulnerability in the WSC plugin through 5.5.7.5 for CKEditor 4 allows remote attackers to r...
CVE-2020-5254HIGH8.1In NetHack before 3.6.6, some out-of-bound values for the hilite_status option can be exploited. NetHack 3.6.6 resolves ...
CVE-2020-5253CRITICAL9.8NetHack before version 3.6.0 allowed malicious use of escaping of characters in the configuration file (usually .nethack...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now