Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Aschempp

#41731of 56,328
6.9Total CVSS
Vulnerabilities · 1
PT-2024-31708
6.9
2024-09-17
Contao · Contao · CVE-2024-45612
Name of the Vulnerable Software and Affected Versions: Contao versions prior to 4.13.49 Contao versions prior to 5.3.15 Contao versions prior to 5.4.3 Description: In affected versions of Contao, an Open Source CMS, an untrusted user can inject insert tags into the canonical tag, which are then replaced on the web page. Recommendations: For versions prior to 4.13.49, update to Contao 4.13.49. For versions prior to 5.3.15, update to Contao 5.3.15. For versions prior to 5.4.3, update to Contao 5.4.3. As a temporary workaround, consider disabling canonical tags in the root page settings until a patch is available.