Pecanproject maintains a niche web application framework product called Pecan, with a narrowly scoped vulnerability footprint centered on input-handling weaknesses. The recurring exposure reflects cross-site scripting risks inherent to web templating and request processing, which are the core functions defenders should validate during integration and updates. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pecanproject over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-57348MEDIUM Cross Site Scripting vulnerability in PecanProject pecan through v.1.8.0 allows a remote attacker to execute arbitrary code via the crafted payload to the hostname, sitegroupid, la | Mar 13, 2025 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pecanproject.
Media articles that mention a CVE ID that affects a product developed by Pecanproject — matched by CVE ID, not by vendor name.