instructure Vulnerabilities and Affected Products
Vulnerabilities associated with canvas_learning_management_service.
Products
Clear product- canvas_learning_management_service1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2020-5775MEDIUM | instructure canvas_learning_management_service Server-Side Request Forgery (SSRF)Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated attacker to cause the Canvas application to perform HTTP GET requests to arbitrary domains. | CVSS5.8v3.1 | EPSS6.53% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |