CVE-2024-25096

Improper Control of Generation of Code ('Code Injection') vulnerability in Canto Inc. Canto allows Code Injection.This issue affects Canto: from n/a through 3.0.7.
Configurations

Configuration 1 (hide)

cpe:2.3:a:canto:canto:*:*:*:*:*:wordpress:*:*

History

10 Apr 2025, 14:24

Type Values Removed Values Added
CPE cpe:2.3:a:canto:canto:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/canto/wordpress-canto-plugin-3-0-6-unauthenticated-remote-code-execution-rce-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/canto/wordpress-canto-plugin-3-0-6-unauthenticated-remote-code-execution-rce-vulnerability?_s_id=cve - Third Party Advisory
First Time Canto canto
Canto

Information

Published : 2024-04-03 13:16

Updated : 2025-04-10 14:24


NVD link : CVE-2024-25096

Mitre link : CVE-2024-25096

CVE.ORG link : CVE-2024-25096


JSON object : View

Products Affected

canto

  • canto
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')