CVE-2020-24711: Getgophish Gophish

Medium severity, CVSS 6.5. EPSS: 1.6% chance of exploitation in the next 30 days.

The Reset button on the Account Settings page in Gophish before 0.11.0 allows attackers to cause a denial of service via a clickjacking attack

Affected products

  • Getgophish Gophish: before 0.11.0 (fixed in 0.11.0)

Published 2020-10-28. Last modified 2026-06-17.