CVE-2020-37026: Midgetspy Sickbeard

Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Sickbeard alpha contains a cross-site request forgery vulnerability that allows attackers to disable authentication by submitting crafted configuration parameters. Attackers can trick users into submitting a malicious form that clears web username and password, effectively removing authentication protection.

Affected products

Published 2026-01-30. Last modified 2026-06-17.