MEDIUM5.4
GHSA-94hc-7qc9-34rf
Canvs Canvas XSS Vulnerability
Details
Canvs Canvas version 3.4.2 contains a Cross Site Scripting (XSS) vulnerability in User's details that can result in denial of service and execution of javascript code.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/austintoddj/canvas
Introduced in:
0No fixed version published yet for austintoddj/canvas (composer). Pin to a known-safe version or switch to an alternative.