2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36514 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the acc_reader crate through 2020-12-27 for Rust. fill_buf may read from uninitialized memory... |
| CVE-2020-36513 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the acc_reader crate through 2020-12-27 for Rust. read_up_to may read from uninitialized memo... |
| CVE-2020-36512 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the buffoon crate through 2020-12-31 for Rust. InputStream::read_exact may read from uninitia... |
| CVE-2020-36511 | HIGH | 7.5 | 1.1% | Dec 27, 2021 | An issue was discovered in the bite crate through 2020-12-31 for Rust. read::BiteReadExpandedExt::read_framed_max may re... |
| CVE-2020-35398 | MEDIUM | 5.3 | 1.1% | Dec 23, 2021 | An issue was discovered in UTI Mutual fund Android application 5.4.18 and prior, allows attackers to brute force enumera... |
| CVE-2020-3896 | MEDIUM | 5.5 | 0.6% | Dec 23, 2021 | This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.4, Security Update... |
| CVE-2020-3886 | HIGH | 7.8 | 1.0% | Dec 23, 2021 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Sec... |
| CVE-2020-20605 | MEDIUM | 6.1 | 0.7% | Dec 22, 2021 | Blog CMS v1.0 contains a cross-site scripting (XSS) vulnerability in the /controller/CommentAdminController.java compone... |
| CVE-2020-20601 | CRITICAL | 9.8 | 7.6% | Dec 22, 2021 | An issue in ThinkCMF X2.2.2 and below allows attackers to execute arbitrary code via a crafted packet. |
| CVE-2020-20600 | MEDIUM | 5.4 | 0.7% | Dec 22, 2021 | MetInfo 7.0 beta contains a stored cross-site scripting (XSS) vulnerability in the $name parameter of admin/?n=column&c=... |
| CVE-2020-20598 | MEDIUM | 6.1 | 0.8% | Dec 22, 2021 | A cross-site scripting (XSS) vulnerability in the Editing component of lemon V1.10.0 allows attackers to execute arbitra... |
| CVE-2020-20597 | MEDIUM | 6.1 | 0.8% | Dec 22, 2021 | A cross-site scripting (XSS) vulnerability in the potrtalItemName parameter in \web\PortalController.java of lemon V1.10... |
| CVE-2020-20595 | MEDIUM | 6.5 | 0.5% | Dec 22, 2021 | A cross-site request forgery (CSRF) in OPMS v1.3 and below allows attackers to arbitrarily add a user account via /user/... |
| CVE-2020-20593 | HIGH | 8 | 0.4% | Dec 22, 2021 | A cross-site request forgery (CSRF) in Rockoa v1.9.8 allows an authenticated attacker to arbitrarily add an administrato... |
| CVE-2020-20426 | MEDIUM | 6.1 | 0.9% | Dec 22, 2021 | S-CMS Government Station Building System v5.0 contains a cross-site scripting (XSS) vulnerability in /function/booksave.... |
| CVE-2020-20425 | MEDIUM | 6.1 | 0.9% | Dec 22, 2021 | S-CMS Government Station Building System v5.0 contains a cross-site scripting (XSS) vulnerability in the search function... |
| CVE-2020-19770 | MEDIUM | 5.4 | 0.5% | Dec 21, 2021 | A cross-site scripting (XSS) vulnerability in the system bulletin component of WUZHI CMS v4.1.0 allows attackers to stea... |
| CVE-2020-3709 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3708 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3707 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3706 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3705 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3697 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3695 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-3682 | — | — | — | Dec 20, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now