Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated malicious user to cause the Canvas application to perform HTTP GET requests to arbitrary domains.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
instructure canvas learning management service 2020-07-29 |