Canva Desktop before v1.125.0 performed double decoding in the deeplink handler. A threat actor could cause the application to load arbitrary same-origin content under the user’s session.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 17 Sep 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Canva Desktop before v1.125.0 performed double decoding in the deeplink handler. A threat actor could cause the application to load arbitrary same-origin content under the user’s session. | |
| First Time appeared |
Canva
Canva canva |
|
| Weaknesses | CWE-174 | |
| CPEs | cpe:2.3:a:canva:canva:*:*:macos:*:*:*:*:* cpe:2.3:a:canva:canva:*:*:windows:*:*:*:*:* |
|
| Vendors & Products |
Canva
Canva canva |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Canva
Published:
Updated: 2026-09-17T03:53:51.927Z
Reserved: 2026-09-17T01:04:32.559Z
Link: CVE-2026-92839
No data.
Status : Received
Published: 2026-09-17T04:18:10.870
Modified: 2026-09-17T04:18:10.870
Link: CVE-2026-92839
No data.
OpenCVE Enrichment
No data.
Weaknesses