Vulnerabilities > Bitrix > Bitrix24 > 20.0.950

DATE CVE VULNERABILITY TITLE RISK
2020-06-01 CVE-2020-13758 Cross-site Scripting vulnerability in Bitrix Bitrix24 20.0.950
modules/security/classes/general.post_filter.php/post_filter.php in the Web Application Firewall in Bitrix24 through 20.0.950 allows XSS by placing %00 before the payload.
network
bitrix CWE-79
4.3