CVE-2020-24709: Getgophish Gophish
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
Cross Site Scripting (XSS) vulnerability in Gophish through 0.10.1 via a crafted landing page or email template.
Affected products
- Getgophish Gophish: up to and including 0.10.1
Published 2020-10-28. Last modified 2026-06-17.