CVE-2020-13485
25.05.2020, 23:15
The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.Enginsight
| Vendor | Product | Version |
|---|---|---|
| verbb | knock_knock | 𝑥 < 1.2.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration