codesupplyco Canvas是codesupplyco公司的一款功能强大、特性丰富的基于区块的页面构建器。 codesupplyco Canvas 2.5.2之前版本存在跨站脚本漏洞,该漏洞源于输入过滤与输出转义机制不完善,存在可通过「tag」参数触发的存储型跨站脚本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| codesupplyco | Canvas | ≤ 2.5.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| codesupplyco | Canvas | 0 ~ 2.5.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet