2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-36775MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid potential deadlock Using f2fs_t...
CVE-2020-36774MEDIUM5.5plugins/gtk+/glade-gtk-box.c in GNOME Glade before 3.38.1 and 3.39.x before 3.40.0 mishandles widget rebuilding for Glad...
CVE-2020-36772MEDIUM4.4CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allo...
CVE-2020-26630MEDIUM4.9A Time-Based SQL Injection vulnerability was discovered in Hospital Management System V4.0 which can allow an attacker t...
CVE-2020-26628MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability was discovered in Hospital Management System V4.0 which allows an attacker to...
CVE-2020-26627MEDIUM4.9A Time-Based SQL Injection vulnerability was discovered in Hospital Management System V4.0 which can allow an attacker t...
CVE-2020-36769MEDIUM5.4The Widget Settings Importer/Exporter Plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the wp_ajax...
CVE-2020-17484MEDIUM6.1An Open Redirection vulnerability exists in Uffizio's GPS Tracker all versions allows an attacker to construct a URL wit...
CVE-2020-25835MEDIUM5.4A potential vulnerability has been identified in Micro Focus ArcSight Management Center. The vulnerability could be remo...
CVE-2020-11448MEDIUM6.1An issue was discovered on Bell HomeHub 3000 SG48222070 devices. There is XSS related to the email field and the login p...
CVE-2020-11447MEDIUM4.3An issue was discovered on Bell HomeHub 3000 SG48222070 devices. Remote authenticated users can retrieve the serial numb...
CVE-2020-17477MEDIUM6.5Incorrect LDAP ACLs in ucs-school-ldap-acls-master in UCS@school before 4.4v5-errata allow remote teachers, staff, and s...
CVE-2020-36759MEDIUM4.3The Woody code snippets plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin...
CVE-2020-36758MEDIUM4.3The RSS Aggregator by Feedzy plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc...
CVE-2020-36755MEDIUM4.3The Customizr theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.3.0. T...
CVE-2020-36754MEDIUM4.3The Paid Memberships Pro plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2020-36753MEDIUM4.3The Hueman theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.6.3. This...
CVE-2020-36751MEDIUM4.3The Coupon Creator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3....
CVE-2020-24089MEDIUM5.5An issue was discovered in ImfHpRegFilter.sys in IOBit Malware Fighter version 8.0.2, allows local attackers to cause a ...
CVE-2020-10132MEDIUM6.1SearchBlox before Version 9.1 is vulnerable to cross-origin resource sharing misconfiguration.
CVE-2020-10128MEDIUM5.4SearchBlox product with version before 9.2.1 is vulnerable to stored cross-site scripting at multiple user input paramet...
CVE-2020-27366MEDIUM6.1Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local at...
CVE-2020-11711MEDIUM4.8An issue was discovered in Stormshield SNS 3.8.0. Authenticated Stored XSS in the admin login panel leads to SSL VPN cre...
CVE-2020-35357MEDIUM6.5A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Libr...
CVE-2020-27418MEDIUM4.4A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vga...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now