CVE-2026-45644
EUVD-2026-3556809.06.2026, 17:17
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Live Share Canvas SDK allows an authorized attacker to elevate privileges over a network.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | live_share_canvas | 𝑥 < 1.4.2 |
𝑥
= Vulnerable software versions