Vulnerabilities > Knowbe4

DATE CVE VULNERABILITY TITLE RISK
2025-04-20 CVE-2020-36844 Cross-site Scripting vulnerability in Knowbe4 Security Awareness Training
The KnowBe4 Security Awareness Training application before 2020-01-10 allows reflected XSS.
network
low complexity
knowbe4 CWE-79
6.1
2025-04-20 CVE-2020-36845 Open Redirect vulnerability in Knowbe4 Security Awareness Training
The KnowBe4 Security Awareness Training application before 2020-01-10 contains a redirect function that does not validate the destination URL before redirecting.
network
low complexity
knowbe4 CWE-601
6.1