CVE-2020-13486
Published May 25, 2020The Knock Knock plugin before 1.2.8 for Craft CMS allows malicious redirection.
Vendor/product archive
2 CVEs tagged to verbb / knock_knock — 1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
The Knock Knock plugin before 1.2.8 for Craft CMS allows malicious redirection.
The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.