CVE-2020-10097: Zammad
Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.
An issue was discovered in Zammad 3.0 through 3.2. It may respond with verbose error messages that disclose internal application or infrastructure information. This information could aid attackers in successfully exploiting other vulnerabilities.
Affected products
- Zammad Zammad: from 1.0.0, up to and including 3.2.0
Published 2020-03-05. Last modified 2026-06-17.