Vendor
CKAN is affected by multiple vulnerabilities that allow remote attackers to conduct cross-site scripting (XSS) attacks, bypass security controls, and disclose sensitive information.