Medium severity5.4NVD Advisory· Published Feb 9, 2018· Updated Jun 17, 2026
CVE-2017-1000507
CVE-2017-1000507
Description
Canvs Canvas version 3.4.2 contains a Cross Site Scripting (XSS) vulnerability in User's details that can result in denial of service and execution of javascript code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
austintoddj/canvasPackagist | <= 3.4.2 | — |
Affected products
2Patches
Vulnerability mechanics
References
4- github.com/cnvs/canvas/issues/359nvdExploitIssue TrackingThird Party Advisory
- github.com/advisories/GHSA-94hc-7qc9-34rfghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2017-1000507ghsaADVISORY
- github.com/austintoddj/canvas/issues/359ghsaWEB
News mentions
0No linked articles in our index yet.