All 2 CVE vulnerabilities found in canto-saas-api, with AI-generated Chinese analysis, references, and POCs.
Vendor: jleehr
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-55374 | canto-saas-api: Authenticated API requests can be redirected via unencoded path variables CWE-74 | 4.8 | Medium | 2026-09-15 |
| CVE-2026-55375 | canto-saas-api: OAuth credentials exposed in URL query string and exception messages CWE-209 | 5.3 | Medium | 2026-09-15 |
All 2 known CVE vulnerabilities affecting canto-saas-api with full Chinese analysis, references, and POCs where available.