CVE-2020-13758: Bitrix BITRIX24
Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.
modules/security/classes/general.post_filter.php/post_filter.php in the Web Application Firewall in Bitrix24 through 20.0.950 allows XSS by placing %00 before the payload.
Affected products
- Bitrix BITRIX24: up to and including 20.0.950
Published 2020-06-01. Last modified 2026-06-17.