CVE-2020-13486: Verbb Knock Knock
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
The Knock Knock plugin before 1.2.8 for Craft CMS allows malicious redirection.
Affected products
- Verbb Knock Knock: before 1.2.8 (fixed in 1.2.8)
Published 2020-05-25. Last modified 2026-06-17.