CVE-2020-37178
Severity CVSS v4.0:
MEDIUM
Type:
CWE-94
Code Injection
Publication date:
11/02/2026
Last modified:
12/02/2026
Description
KeePass Password Safe versions before 2.44 contain a denial of service vulnerability in the help system's HTML handling. Attackers can trigger the vulnerability by dragging and dropping malicious HTML files into the help area, potentially causing application instability or crash.
Impact
Base Score 4.0
4.60
Severity 4.0
MEDIUM
Base Score 3.x
7.50
Severity 3.x
HIGH



