Security Advisory

CVE-2022-24899

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-05 23:45:13
Last updated 2025-04-23 18:29:58
Assigner GitHub_M
State PUBLISHED

Description

Contao is a powerful open source CMS that allows you to create professional websites and scalable web applications. In versions of Contao prior to 4.13.3 it is possible to inject code into the canonical tag. As a workaround users may disable canonical tags in the root page settings.