← Back to browse · API

CVE-2024-25096

Severity
CRITICAL
CVSS
10.0
EPSS
0.00681
Risk score
40.24
CISA KEV
No
PoC
No
Published
2024-04-03
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2024-22458, GHSA-5RCW-5RQ5-G5X2
Products
flightbycanto:Canto n/a ≤3.0.7
Sources
euvd EUVD-2024-22458

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Canto Inc. Canto allows Code Injection.This issue affects Canto: from n/a through 3.0.7.

References