Skip to main content

Year archive

CVEs published in 2020

Archive summary

18,322 CVEs published in 2020 — 2,625 Critical, 7,666 High, 7,546 Medium, 485 Low, 0 Unrated.

CVE-2019-17002

Published Jan 8, 2020

If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerabilit…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-17001

Published Jan 8, 2020

A Content-Security-Policy that blocks in-line scripts could be bypassed using an object tag to execute JavaScript in the protected document (cross-site scripting). This is a separ…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-17000

Published Jan 8, 2020

An object tag with a data URI did not correctly inherit the document's Content Security Policy. This allowed a CSP bypass in a cross-origin frame if the document's policy explicit…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-11765

Published Jan 8, 2020

A compromised content process could send a message to the parent process that would cause the 'Click to Play' permission prompt to be shown. However, due to lack of validation fro…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-6583

Published Jan 8, 2020

BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking. An attacker can exploit the XSS vulnerability, retrieve the session cookie f…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-11756

Published Jan 8, 2020

Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-0008

Published Jan 8, 2020

In LowEnergyClient::MtuChangedCallback of low_energy_client.cc, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure wit…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 18,026-18,050 of 18,322 CVEsPage 722 of 733