AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-9934

MEDIUM · CVSS 5.5 EPSS 3.21% CISA KEV · Actively Exploited

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-10-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CISA KEV Details

Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.

Ransomware use: Unknown

Added to KEV: 2022-09-08

Required action: Apply updates per vendor instructions.

CVE
CVE-2020-9934
Severity
MEDIUM
CVSS
5.5
EPSS
3.21%

Original NVD Description

An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6. A local user may be able to view sensitive user information.