2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-10770MEDIUM5.3A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using...
CVE-2020-29486MEDIUM6An issue was discovered in Xen through 4.14.x. Nodes in xenstore have an ownership. In oxenstored, a owner could give a ...
CVE-2020-29485MEDIUM5.5An issue was discovered in Xen 4.6 through 4.14.x. When acting upon a guest XS_RESET_WATCHES request, not all tracking i...
CVE-2020-29484MEDIUM6An issue was discovered in Xen through 4.14.x. When a Xenstore watch fires, the xenstore client that registered the watc...
CVE-2020-29483MEDIUM6.5An issue was discovered in Xen through 4.14.x. Xenstored and guests communicate via a shared memory page using a specifi...
CVE-2020-29482MEDIUM6An issue was discovered in Xen through 4.14.x. A guest may access xenstore paths via absolute paths containing a full pa...
CVE-2020-27147MEDIUM6.5The REST API component of TIBCO Software Inc.'s TIBCO PartnerExpress contains a vulnerability that theoretically allows ...
CVE-2020-29571MEDIUM6.2An issue was discovered in Xen through 4.14.x. A bounds check common to most operation time functions specific to FIFO e...
CVE-2020-29570MEDIUM6.2An issue was discovered in Xen through 4.14.x. Recording of the per-vCPU control block mapping maintained by Xen and tha...
CVE-2020-29568MEDIUM6.5An issue was discovered in Xen through 4.14.x. Some OSes (such as Linux, FreeBSD, and NetBSD) are processing watch event...
CVE-2020-29567MEDIUM6.2An issue was discovered in Xen 4.14.x. When moving IRQs between CPUs to distribute the load of IRQ handling, IRQ vectors...
CVE-2020-29566MEDIUM5.5An issue was discovered in Xen through 4.14.x. When they require assistance from the device model, x86 HVM guests must b...
CVE-2020-27777MEDIUM6.7A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication. On a locked down (usually...
CVE-2020-27067MEDIUM6.4In the l2tp subsystem, there is a possible use after free due to a race condition. This could lead to local escalation o...
CVE-2020-27066MEDIUM6.7In xfrm6_tunnel_free_spi of net/ipv6/xfrm6_tunnel.c, there is a possible use after free due to improper locking. This co...
CVE-2020-27053MEDIUM4.4In broadcastWifiCredentialChanged of ClientModeImpl.java, there is a possible location permission bypass due to a missin...
CVE-2020-27047MEDIUM5.5In ce_t4t_update_binary of ce_t4t.cc, there is a possible out of bounds read due to a missing bounds check. This could l...
CVE-2020-27046MEDIUM4.4In nfc_ncif_proc_ee_action of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This co...
CVE-2020-27043MEDIUM4.4In nfc_enabled of nfc_main.cc, there is a possible out of bounds read due to an incorrect increment. This could lead to ...
CVE-2020-27041MEDIUM5.5In showProvisioningNotification of ConnectivityService.java, there is an unsafe PendingIntent. This could lead to local ...
CVE-2020-27040MEDIUM4.4In phNxpNciHal_core_initialized of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check....
CVE-2020-27039MEDIUM5.5In postNotification of ServiceRecord.java, there is a possible permission bypass due to an unsafe PendingIntent. This co...
CVE-2020-27038MEDIUM6.5In process of C2SoftVorbisDec.cpp, there is a possible resource exhaustion due to a memory leak. This could lead to remo...
CVE-2020-27037MEDIUM4.4In phNxpNciHal_core_initialized of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check....
CVE-2020-27036MEDIUM6.7In phNxpNciHal_send_ext_cmd of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now