CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2020-2301

    Last Modified: 21 Nov 2024

    Jenkins Active Directory Plugin 2.19 and earlier allows attackers to log in as any user with any password while a successful authentication of that user is still in the optional cache when using Windows/ADSI mode.

    Published: 4 Nov 2020
    4.3
    Medium

    CVE-2020-2302

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Active Directory Plugin 2.19 and earlier allows attackers with Overall/Read permission to access the domain health check diagnostic page.

    Published: 4 Nov 2020
    9.8
    Critical

    CVE-2020-2299

    Last Modified: 21 Nov 2024

    Jenkins Active Directory Plugin 2.19 and earlier allows attackers to log in as any user if a magic constant is used as the password.

    Published: 4 Nov 2020
    9.8
    Critical

    CVE-2020-2300

    Last Modified: 21 Nov 2024

    Jenkins Active Directory Plugin 2.19 and earlier does not prohibit the use of an empty password in Windows/ADSI mode, which allows attackers to log in to Jenkins as any user depending on the configuration of the Active Directory server.

    Published: 4 Nov 2020
    —
    Unknown

    CVE-2020-27346

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 4 Nov 2020
    6.3
    Medium

    CVE-2020-28049

    Last Modified: 21 Nov 2024

    An issue was discovered in SDDM before 0.19.0. It incorrectly starts the X server in a way that - for a short time period - allows local unprivileged users to create a connection to the X server without providing proper authentication. A local attacker can thus access X server display contents and, for example, intercept keystrokes or access the clipboard. This is caused by a race condition during Xauthority file creation.

    Published: 4 Nov 2020
    4.8
    Medium

    CVE-2020-10776

    Last Modified: 21 Nov 2024

    A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack.

    Published: 4 Nov 2020
    6.5
    Medium

    CVE-2020-2305

    Last Modified: 21 Nov 2024

    Jenkins Mercurial Plugin 2.11 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

    Published: 4 Nov 2020
    4.3
    Medium

    CVE-2020-2307

    Last Modified: 21 Nov 2024

    Jenkins Kubernetes Plugin 1.27.3 and earlier allows low-privilege users to access possibly sensitive Jenkins controller environment variables.

    Published: 4 Nov 2020
    4.3
    Medium

    CVE-2020-2308

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Kubernetes Plugin 1.27.3 and earlier allows attackers with Overall/Read permission to list global pod template names.

    Published: 4 Nov 2020
    4.3
    Medium

    CVE-2020-2309

    Last Modified: 21 Nov 2024

    A missing/An incorrect permission check in Jenkins Kubernetes Plugin 1.27.3 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.

    Published: 4 Nov 2020
    8.1
    High

    CVE-2020-14389

    Last Modified: 21 Nov 2024

    It was found that Keycloak before version 12.0.0 would permit a user with only view-profile role to manage the resources in the new account console, allowing access and modification of data the user was not intended to have.

    Published: 4 Nov 2020
    6.8
    Medium

    CVE-2020-14366

    Last Modified: 21 Nov 2024

    A vulnerability was found in keycloak, where path traversal using URL-encoded path segments in the request is possible because the resources endpoint applies a transformation of the url path to the file path. Only few specific folder hierarchies can be exposed by this flaw

    Published: 4 Nov 2020
    6.5
    Medium

    CVE-2020-2304

    Last Modified: 21 Nov 2024

    Jenkins Subversion Plugin 2.13.1 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

    Published: 4 Nov 2020
    4.3
    Medium

    CVE-2020-2306

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Mercurial Plugin 2.11 and earlier allows attackers with Overall/Read permission to obtain a list of names of configured Mercurial installations.

    Published: 4 Nov 2020
    7.7
    High

    CVE-2020-26211

    Last Modified: 21 Nov 2024

    In BookStack before version 0.30.4, a user with permissions to edit a page could insert JavaScript code through the use of `javascript:` URIs within a link or form which would run, within the context of the current page, when clicked or submitted. Additionally, a user with permissions to edit a page could insert a particular meta tag which could be used to silently redirect users to a alternative location upon visit of a page. Dangerous content may remain in the database but will be removed before being displayed on a page. If you think this could have been exploited the linked advisory provides a SQL query to test. As a workaround without upgrading, page edit permissions could be limited to only those that are trusted until you can upgrade although this will not address existing exploitation of this vulnerability. The issue is fixed in BookStack version 0.30.4.

    Published: 3 Nov 2020
    9.8
    Critical

    CVE-2020-1909

    Last Modified: 21 Nov 2024

    A use-after-free in a logging library in WhatsApp for iOS prior to v2.20.111 and WhatsApp Business for iOS prior to v2.20.111 could have resulted in memory corruption, crashes and potentially code execution. This could have happened only if several events occurred together in sequence, including receiving an animated sticker while placing a WhatsApp video call on hold.

    Published: 3 Nov 2020
    4.6
    Medium

    CVE-2020-1908

    Last Modified: 21 Nov 2024

    Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after the phone was locked.

    Published: 3 Nov 2020
    7.7
    High

    CVE-2020-26210

    Last Modified: 21 Nov 2024

    In BookStack before version 0.30.4, a user with permissions to edit a page could add an attached link which would execute untrusted JavaScript code when clicked by a viewer of the page. Dangerous content may remain in the database after this update. If you think this could have been exploited the linked advisory provides a SQL query to test. As a workaround, page edit permissions could be limited to only those that are trusted until you can upgrade although this will not address existing exploitation of this vulnerability. The issue is fixed in version 0.30.4.

    Published: 3 Nov 2020
    5.4
    Medium

    CVE-2020-4785

    Last Modified: 21 Nov 2024

    IBM App Connect Enterprise Certified Container 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 189219.

    Published: 3 Nov 2020
    4.3
    Medium

    CVE-2020-4649

    Last Modified: 21 Nov 2024

    IBM Planning Analytics Local 2.0.9.2 and IBM Planning Analytics Workspace 57 could expose data to non-privleged users by not invalidating TM1Web user sessions. IBM X-Force ID: 186022.

    Published: 3 Nov 2020
    3.5
    Low

    CVE-2019-4349

    Last Modified: 21 Nov 2024

    IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 applications can be installed on a deprecated operating system version that could compromised the confidentiality and integrity of the service. IBM X-Force ID: 161486

    Published: 3 Nov 2020
    9.6
    Critical

    CVE-2020-16010

    Last Modified: 14 Jan 2026

    Heap buffer overflow in UI in Google Chrome on Android prior to 86.0.4240.185 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

    Published: 3 Nov 2020
    8.8
    High

    CVE-2020-15998

    Last Modified: 21 Nov 2024

    Use after free in USB in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

    Published: 3 Nov 2020
    8.8
    High

    CVE-2020-15997

    Last Modified: 21 Nov 2024

    Use after free in Mojo in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

    Published: 3 Nov 2020
    8.8
    High

    CVE-2020-15995

    Last Modified: 21 Nov 2024

    Out of bounds write in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 3 Nov 2020
    8.8
    High

    CVE-2020-15996

    Last Modified: 21 Nov 2024

    Use after free in passwords in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

    Published: 3 Nov 2020
    9.8
    Critical

    CVE-2020-15993

    Last Modified: 21 Nov 2024

    Use after free in printing in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 3 Nov 2020
    8.8
    High

    CVE-2020-15994

    Last Modified: 21 Nov 2024

    Use after free in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 3 Nov 2020
    9.8
    Critical

    CVE-2020-16846

    Last Modified: 7 Nov 2025

    An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can result in shell injection.

    Published: 3 Nov 2020
    6.3
    Medium

    CVE-2020-25653

    Last Modified: 21 Nov 2024

    A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

    Published: 3 Nov 2020
    5.5
    Medium

    CVE-2020-17490

    Last Modified: 21 Nov 2024

    The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.

    Published: 3 Nov 2020
    5.5
    Medium

    CVE-2020-25650

    Last Modified: 21 Nov 2024

    A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system to the virtual machine. Any unprivileged local guest user with access to the UNIX domain socket path `/run/spice-vdagentd/spice-vdagent-sock` could use this flaw to perform a memory denial of service for spice-vdagentd or even other processes in the VM system. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and previous versions.

    Published: 3 Nov 2020
    6.4
    Medium

    CVE-2020-25651

    Last Modified: 21 Nov 2024

    A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an illegitimate local user in the VM system. Active file transfers from other users could also be interrupted, resulting in a denial of service. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

    Published: 3 Nov 2020
    7.5
    High

    CVE-2020-25661

    Last Modified: 21 Nov 2024

    A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth implementation handled L2CAP packets with A2MP CID. This flaw allows a remote attacker in an adjacent range to crash the system, causing a denial of service or potentially executing arbitrary code on the system by sending a specially crafted L2CAP packet. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 3 Nov 2020
    4.7
    Medium

    CVE-2020-27820

    Last Modified: 21 Nov 2024

    A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).

    Published: 3 Nov 2020
    9.8
    Critical

    CVE-2020-25592

    Last Modified: 21 Nov 2024

    In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.

    Published: 3 Nov 2020
    5.5
    Medium

    CVE-2020-25652

    Last Modified: 21 Nov 2024

    A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

    Published: 3 Nov 2020
    5.3
    Medium

    CVE-2020-25662

    Last Modified: 21 Nov 2024

    A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation handled the initialization of stack memory when handling certain AMP packets. This flaw allows a remote attacker in an adjacent range to leak small portions of stack memory on the system by sending specially crafted AMP packets. The highest threat from this vulnerability is to data confidentiality.

    Published: 3 Nov 2020
    4.3
    Medium

    CVE-2020-8569

    Last Modified: 21 Nov 2024

    Kubernetes CSI snapshot-controller prior to v2.1.3 and v3.0.2 could panic when processing a VolumeSnapshot custom resource when: - The VolumeSnapshot referenced a non-existing PersistentVolumeClaim and the VolumeSnapshot did not reference any VolumeSnapshotClass. - The snapshot-controller crashes, is automatically restarted by Kubernetes, and processes the same VolumeSnapshot custom resource after the restart, entering an endless crashloop. Only the volume snapshot feature is affected by this vulnerability. When exploited, users can’t take snapshots of their volumes or delete the snapshots. All other Kubernetes functionality is not affected.

    Published: 3 Nov 2020
    5.3
    Medium

    CVE-2020-26939

    Last Modified: 17 Jul 2025

    In Legion of the Bouncy Castle BC before 1.61 and BC-FJA before 1.0.1.2, attackers can obtain sensitive information about a private exponent because of Observable Differences in Behavior to Error Inputs. This occurs in org.bouncycastle.crypto.encodings.OAEPEncoding. Sending invalid ciphertext that decrypts to a short payload in the OAEP Decoder could result in the throwing of an early exception, potentially leaking some information about the private exponent of the RSA private key performing the encryption.

    Published: 2 Nov 2020
    5.4
    Medium

    CVE-2020-23868

    Last Modified: 21 Nov 2024

    NeDi 1.9C allows inc/rt-popup.php d XSS.

    Published: 2 Nov 2020
    5.4
    Medium

    CVE-2020-23989

    Last Modified: 21 Nov 2024

    NeDi 1.9C allows pwsec.php oid XSS.

    Published: 2 Nov 2020
    6.1
    Medium

    CVE-2020-27982

    Last Modified: 21 Nov 2024

    IceWarp 11.4.5.0 allows XSS via the language parameter.

    Published: 2 Nov 2020
    7.5
    High

    CVE-2020-7758

    Last Modified: 21 Nov 2024

    This affects versions of package browserless-chrome before 1.40.2-chrome-stable. User input flowing from the workspace endpoint gets used to create a file path filePath and this is fetched and then sent back to a user. This can be escaped to fetch arbitrary files from a server.

    Published: 2 Nov 2020
    6.5
    Medium

    CVE-2020-7757

    Last Modified: 21 Nov 2024

    This affects all versions of package droppy. It is possible to traverse directories to fetch configuration files from a droopy server.

    Published: 2 Nov 2020
    9.8
    Critical

    CVE-2020-23639

    Last Modified: 21 Nov 2024

    A command injection vulnerability exists in Moxa Inc VPort 461 Series Firmware Version 3.4 or lower that could allow a remote attacker to execute arbitrary commands in Moxa's VPort 461 Series Industrial Video Servers.

    Published: 2 Nov 2020
    7.5
    High

    CVE-2020-9368

    Last Modified: 21 Nov 2024

    The Module Olea Gift On Order module through 5.0.8 for PrestaShop enables an unauthenticated user to read arbitrary files on the server via getfile.php?file=/.. directory traversal.

    Published: 2 Nov 2020
    7.8
    High

    CVE-2020-14425

    Last Modified: 21 Nov 2024

    Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can execute local files and bypass the security dialog.

    Published: 2 Nov 2020
    7.5
    High

    CVE-2020-10937

    Last Modified: 21 Nov 2024

    An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverage the IPFS connection management reputation system to poison other nodes' routing tables, eclipsing the nodes that are the target of the attack from the rest of the network. Later versions, in particular go-ipfs 0.7, mitigate this.

    Published: 2 Nov 2020