Canto

Canto has launched a new WordPress plugin that allows users to publish photos, images and other web-safe media directly from Canto to their WordPress website. Users can browse or search their Canto library directly in WordPress, and once they click to insert the image, it will save automatically to their WordPress Media Library. The plugin is designed to simplify collaboration with creative teams.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Canto 3.0.8

    Fixed

    The Canto plugin for WordPress has a security issue that allows hackers to access and execute code on a website using the plugin. This can happen if the website has a setting called "allow_url_includ...

    Read More
  • Input validation vulnerability in Canto 3.0.6

    Fixed

    The Canto plugin on WordPress can be hacked by anyone, even if they are not logged in, in versions up to 3.0.6. This is because of a coding mistake that allows outsiders to add their own code to the ...

    Read More
  • Input validation vulnerability in Canto 3.0.4

    Fixed

    The Canto plugin for WordPress is vulnerable to security issues in versions up to 3.0.4. Unauthenticated attackers can use the 'wp_abspath' parameter to include and execute code from a remote locatio...

    Read More
  • Input validation vulnerability in Canto 1.9.0

    Fixed

    The Canto plugin 2.1.1 is a tool designed to work with the WordPress website platform. It includes a file called download.php which can be used to access different parts of a website

    Read More
  • Input validation vulnerability in Canto 2.0.1

    Fixed

    The Canto plugin for WordPress (version 1.9.0) has a security flaw which can be exploited by an unauthenticated attacker. This flaw allows the attacker to make requests to any internal or external ser...

    Read More
  • Input validation vulnerability in Canto 1.9.0

    Fixed

    The Canto plugin version 1.3.0 for WordPress has a security issue that could allow someone without permission to make requests to other servers. This is done through a file called ""get.php"" which is...

    Read More
  • Input validation vulnerability in Canto 1.9.0

    Fixed

    The Canto plugin version 1.9.0 for WordPress has a security flaw that allows an outsider to send requests to any internal and external server without needing to be authenticated. This is done by using...

    Read More