← back
CVE-2020-22840

CVE-2020-22840

23Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 14%
exploitation probability
14%top 4% of all CVEs
observed exploitation
nono source reports it
Open redirect vulnerability in b2evolution CMS version prior to 6.11.6 allows an attacker to perform malicious open redirects to an attacker controlled resource via redirect_to parameter in email_passthrough.php.
Affected products
n/a · n/a