7.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): REQUIRED
- Scope (S): CHANGED
- Confidentiality impact (C): LOW
- Integrity impact (I): LOW
- Availability impact (A): LOW
WordPress Canva – Design beautiful blog graphics plugin <= 1.2.4 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Canva Canva – Design beautiful blog graphics allows Reflected XSS.This issue affects Canva – Design beautiful blog graphics: from n/a through 1.2.4.
References
- https://patchstack.com/database/vulnerability/canva/wordpress-canva-design-beau… vdb-entry
- https://patchstack.com/database/vulnerability/canva/wordpress-canva-design-beau… vdb-entry
- https://patchstack.com/database/vulnerability/canva/wordpress-canva-design-beau… vdb-entry
- https://patchstack.com/database/vulnerability/canva/wordpress-canva-design-beau… x_transferred vdb-entry
Affected products
- =<1.2.4
Matching in nixpkgs
pkgs.fgqcanvas
Qt-based remote canvas application for FlightGear
-
nixos-unstable -
- nixpkgs-unstable 0-unstable-2024-02-11
pkgs.goocanvas
Canvas widget for GTK based on the the Cairo 2D library
-
nixos-unstable -
- nixpkgs-unstable 1.0.0
pkgs.goocanvas2
Canvas widget for GTK based on the the Cairo 2D library
-
nixos-unstable -
- nixpkgs-unstable 2.0.4
pkgs.goocanvas3
Canvas widget for GTK based on the the Cairo 2D library
-
nixos-unstable -
- nixpkgs-unstable 3.0.0
pkgs.goocanvasmm2
C++ bindings for GooCanvas
-
nixos-unstable -
- nixpkgs-unstable 1.90.11
pkgs.idrisPackages.canvas
Idris FFI binding for html5 canvas 2d api
-
nixos-unstable -
- nixpkgs-unstable 2017-11-09
pkgs.gnome2.libgnomecanvas
None
-
nixos-unstable -
- nixpkgs-unstable 2.30.3
pkgs.python312Packages.ipycanvas
Expose the browser's Canvas API to IPython
-
nixos-unstable -
- nixpkgs-unstable 0.14.1
pkgs.python313Packages.ipycanvas
Expose the browser's Canvas API to IPython
-
nixos-unstable -
- nixpkgs-unstable 0.14.1
pkgs.haskellPackages.blank-canvas
HTML5 Canvas Graphics Library
-
nixos-unstable -
- nixpkgs-unstable 0.7.4
pkgs.haskellPackages.yampa-canvas
blank-canvas frontend for Yampa
-
nixos-unstable -
- nixpkgs-unstable 0.2.4
pkgs.haskellPackages.diagrams-canvas
HTML5 canvas backend for diagrams drawing EDSL
-
nixos-unstable -
- nixpkgs-unstable 1.4.1.2
pkgs.python312Packages.orange-canvas-core
Orange framework for building graphical user interfaces for editing workflows
-
nixos-unstable -
- nixpkgs-unstable 0.2.6
pkgs.python313Packages.orange-canvas-core
Orange framework for building graphical user interfaces for editing workflows
-
nixos-unstable -
- nixpkgs-unstable 0.2.6
pkgs.obs-studio-plugins.obs-vertical-canvas
Plugin for OBS Studio to add vertical canvas
-
nixos-unstable -
- nixpkgs-unstable 1.4.10
Package maintainers
-
@bobby285271 Bobby Rong <rjl931189261@126.com>
-
@Pandapip1 Gavin John <gavinnjohn@gmail.com>
-
@brainrake Marton Boros <martonboros@gmail.com>
-
@flexiondotorg Martin Wimpress <martin@wimpress.org>
-
@bcdarwin Ben Darwin <bcdarwin@gmail.com>
-
@lucasew Lucas Eduardo Wendt <lucas59356@gmail.com>