cnvs.io Canvas 3.3.0 has XSS in the title and content fields of a "Posts > Add New" action, and during creation of new tags and users.
References
Link | Resource |
---|---|
https://github.com/cnvs/canvas/issues/331 | Issue Tracking Patch |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:23:05
Updated: 2022-10-03T16:23:05
Reserved: 2022-10-03T00:00:00
Link: CVE-2017-8298
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-04-27T16:59:00.167
Modified: 2017-05-03T13:05:15.877
Link: CVE-2017-8298
JSON object: View
Redhat Information
No data.
CWE