Canto
Flightbycanto · 4 CVEs
CVE-2026-6441
MEDIUM
Canto <= 3.1.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Setting Modification
Apr 17, 2026
CVE-2026-3335
MEDIUM
Canto <= 3.1.1 - Missing Authorization to Unauthenticated File Upload
Mar 21, 2026
CVE-2024-4936
CRITICAL
Canto <= 3.0.8 - Unauthenticated Remote File Inclusion
Jun 14, 2024
CVE-2023-3452
CRITICAL
Canto <= 3.0.4 - Unauthenticated Remote File Inclusion
Aug 12, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-6441 | Canto <= 3.1.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Setting Modification | MEDIUM | 0.36% | Apr 17, 2026 |
| CVE-2026-3335 | Canto <= 3.1.1 - Missing Authorization to Unauthenticated File Upload | MEDIUM | 1.32% | Mar 21, 2026 |
| CVE-2024-4936 | Canto <= 3.0.8 - Unauthenticated Remote File Inclusion | CRITICAL | 1.03% | Jun 14, 2024 |
| CVE-2023-3452 | Canto <= 3.0.4 - Unauthenticated Remote File Inclusion | CRITICAL | 6.96% | Aug 12, 2023 |
Showing 1 to 4 of 4 CVEs