### [CVE-2017-8298](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8298) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description cnvs.io Canvas 3.3.0 has XSS in the title and content fields of a "Posts > Add New" action, and during creation of new tags and users. ### POC #### Reference - https://github.com/cnvs/canvas/issues/331 #### Github No PoCs found on GitHub currently.