Описание
Canvs Canvas Cross-site Scripting (XSS) via title and content fields
cnvs.io Canvas 3.3.0 has XSS in the title and content fields of a "Posts > Add New" action, and during creation of new tags and users.
Пакеты
Наименование
austintoddj/canvas
composer
Затронутые версииВерсия исправления
= 3.3.0
Отсутствует
Связанные уязвимости
CVSS3: 5.4
nvd
почти 9 лет назад
cnvs.io Canvas 3.3.0 has XSS in the title and content fields of a "Posts > Add New" action, and during creation of new tags and users.