CVE-2020-36946
SyncBreeze 10.0.28 contains a denial of service vulnerability in the login endpoint that allows remote attackers to crash the service. Attackers can send an oversized payload in the login request to overwhelm the application and potentially disrupt service availability.
- Affected products
- Syncbreeze
- Flexense Syncbreeze
- = 10.0.28
- Fix
- Available
- CVSS 4.0
- 8.7 HIGH
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 0.6% (47th percentile)
- Weakness
- CWE-770
- NVD status
- Analyzed
- Published
- 2026-01-27
CVE-2020-36946 at NVD
No indexed exploits for CVE-2020-36946 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2020-36946 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.