Skip to main content

Vendor/product archive

verbb / knock_knock CVEs

Beta · best-effort

2 CVEs tagged to verbb / knock_knock1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-13485

Published May 25, 2020

The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1