VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

17,661 guide candidatesPage 1411 of 1472
Known exploitedHighFixed-version data
CVE-2020-28949

PEAR Archive_Tar

Affected
< 1.4.12, 9.0, 10.0, 32, 33, 34, 35, >= 7.0 < 7.75, >= 8.0.0 < 8.9.10, >= 8.8.0 < 8.8.12, >= 9.0.0 < 9.0.9
Fixed
1.4.12, 7.75, 8.9.10, 8.8.12, 9.0.9
Known exploitedHighResearch in progress
CVE-2020-17087

Microsoft Windows

Affected
10.0.0, 6.1.0, 6.3.0, 6.0.0, 6.2.0, r2, 20h2, 1903, 1909, 2004
Fixed
No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2020-23968

international sign&go

Affected
7.1
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2020-13927

Apache Airflow's Experimental API

Affected
Apache Airflow <1.10.11, < 1.10.11
Fixed
1.10.11
Known exploitedCriticalFixed-version data
CVE-2020-16846

SaltStack Salt

Affected
< 2015.8.10, >= 2015.8.11 < 2015.8.13, >= 2016.3.0 < 2016.3.4, >= 2016.3.5 < 2016.3.6, >= 2016.3.7 < 2016.3.8, >= 2016.11.0 < 2016.11.3, >= 2016.11.4 < 2016.11.6, >= 2016.11.7 < 2016.11.10, >= 2017.5.0 < 2017.7.4, >= 2017.7.5 < 2017.7.8, >= 2018.2.0 < 2018.3.5, >= 2019.2.0 < 2019.2.5, >= 3000.0 < 3000.3, 3001, 3002, 9.0, 10.0, 31, 15.1
Fixed
2015.8.10, 2015.8.13, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2016.11.6, 2016.11.10, 2017.7.4, 2017.7.8, 2018.3.5, 2019.2.5, 3000.3
Known exploitedCriticalFixed-version data
CVE-2020-16010

Google Chrome for Android UI

Affected
unspecified, < 86.0.4240.185
Fixed
86.0.4240.185
Known exploitedHighFixed-version data
CVE-2020-16009

Google Chromium V8

Affected
unspecified, < 86.0.241, < 86.0.4240.183, < 86.0.622.63, 15.0, 15.1, 15.2, 32, 33, 10.0
Fixed
86.0.241, 86.0.4240.183, 86.0.622.63
Known exploitedCriticalFixed-version data
CVE-2020-15999

Google Chrome FreeType

Affected
unspecified, < 86.0.4240.111, >= 2.6.0 < 2.10.4, 10.0, 31, 15.0
Fixed
86.0.4240.111, 2.10.4
Review reviewHighResearch in progress
CVE-2020-28043

misp

Affected
<= 2.4.133
Fixed
No verified fixed-version field is available yet
Priority reviewCriticalFixed-version data
CVE-2020-24881

osticket

Affected
< 1.14.3
Fixed
1.14.3
Known exploitedCriticalResearch in progress
CVE-2020-14750

Oracle WebLogic Server

Affected
10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0, 14.1.1.0.0
Fixed
No verified fixed-version field is available yet
Known exploitedMediumFixed-version data
CVE-2018-19953

QNAP Network Attached Storage (NAS)

Affected
unspecified, < 4.2.6, >= 4.3.1.0013 < 4.3.3.1161, >= 4.3.4 < 4.3.4.1190, >= 4.3.6 < 4.3.6.1218, >= 4.4.0 < 4.4.1.1201, >= 4.4.2 < 4.4.2.1231, 4.2.6
Fixed
4.2.6, 4.3.3.1161, 4.3.4.1190, 4.3.6.1218, 4.4.1.1201, 4.4.2.1231