Canto Inc. Vulnerabilities and Affected Products
Vulnerabilities associated with Canto.
Products
Clear product- Canto1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-25096CRITICAL | WordPress canto plugin <= 3.0.7 - Unauth. Remote Code Execution (RCE) vulnerabilityImproper Control of Generation of Code ('Code Injection') vulnerability in Canto Inc. Canto allows Code Injection.This issue affects Canto: from n/a through 3.0.7. CWE-94Apr 3, 2024 | CVSS10.0v3.1 | EPSS0.681% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |