Lucene search

K
osvGoogleOSV:CVE-2020-11056
HistoryMay 07, 2020 - 9:15 p.m.

CVE-2020-11056

2020-05-0721:15:11
Google
osv.dev
3

EPSS

0.001

Percentile

31.0%

In Sprout Forms before 3.9.0, there is a potential Server-Side Template Injection vulnerability when using custom fields in Notification Emails which could lead to the execution of Twig code. This has been fixed in 3.9.0.

EPSS

0.001

Percentile

31.0%

Related for OSV:CVE-2020-11056