Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi Plone Security Advisories

Loading...
Moderate
GSA_kwCzR0hTQS14ZzVwLTh3ZzUtcmh4bc4AA5yI
Phone information disclosure vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 months ago
High
GSA_kwCzR0hTQS01eGZ4LTU1eDQtajIyM84AA4jV
Cross-Frame Scripting vulnerability has been found on Plone CMS
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.0
Published: 3 months ago
High
GSA_kwCzR0hTQS00N3A1LXAzanctdzc4d84AAxtz
Server-Side Request Forgery in Plone CMS
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS04bWM0LTJ4cmMtZzU4Ms4AAjY8
Plone cross site scripting (XSS)
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1oaG1mLTdyZ2ctZ2N3Nc4AAjY6
Plone SQL Injection Vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS04Mmo5LXdmY2YtOXYyaM4AAjYw
Plone Open Redirect Vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Critical
GSA_kwCzR0hTQS13Nmc5LXhjY2MtMzQ3aM4AAjY7
Plone Unauthenticated Write Vulnerability
Ecosystems: pypi
Packages: plone.app.contenttypes, Plone
Source: GitHub Advisory Database
Blast Radius: 18.8
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1jdzU4LWdwZ3ctaHd4Ms4AAjYs
Plone allows weak passwords
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1xajd4LXdtOXEtcWp4OM4AAgL1
Plone Cross-site Scripting vulnerability in PortalTransforms
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS03aHhjLW13eDctNWhtY84AAePM
Plone Code Injection vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1jeHc3LTg1eG0tM3hyY84AAePN
Plone Code Injection vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS13cmYyLTJyY2gtY21yOc4AAePJ
Plone is vulnerable to denial of service
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS13cHJyLW1jNTQtYzYycc4AAeNO
Exposure of Sensitive Information in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02aDh4LTczZngtcTJoOc4AAb6U
Chameleon in Plone allows Authentication Bypass
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS01NnAzLXJycDQtMmo4Ms4AAWK2
Plone Open Redirection vulnerability via next parameter
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS00NmY5LWY4am0tbXcyeM2_OQ
Plone Cross-site Scripting vulnerability in the LiveSearch module
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTM1cmctNDY2dy03N2gz
Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone
Ecosystems: pypi
Packages: Plone, Products.PluggableAuthService, Products.CMFCore
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWdjOWctNjdjcS1wN3Y0
Server-Side Request Forgery in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: almost 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTRtZzQtd3ZteC01MzMy
Server-Side Request Forgery in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: almost 3 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhtMnAtZmh3eC05Mjg1
Incorrect Permission Assignment for Critical Resource in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: almost 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJtcHYtcmNwNi12OHdj
Cross-site scripting in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: almost 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhtMmgtZjQ1Ni02ajg4
Cross-site scripting in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: almost 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZqNjctdzNtNC1yZm1w
Cross-site scripting in Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: almost 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTJjOGMtODR3Mi1qMzhq
Improper Restriction of XML External Entity Reference in Plone
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: about 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXg3d2YtNW1qYy02eDc2
SSRF attacks via tracebacks in Plone
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: about 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdxNngtZzY4NS13NWYy
Improper Restriction of XML External Entity Reference in Plone
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: about 3 years ago
Low
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg2aHEtYzg5Ni13ODgy
Low severity vulnerability that affects Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTJxeDgtNTg5ai1nY3B4
Moderate severity vulnerability that affects Plone and plone.app.users
Ecosystems: pypi
Packages: Plone, plone.app.users
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBycjUtcGZyOC1xOWYz
Moderate severity vulnerability that affects Plone
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTg3OXItN2Yzdy04amoz
Moderate severity vulnerability that affects Plone and Zope2
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA2aDktaHBjZy1jNmdt
High severity vulnerability that affects Plone and Zope2
Ecosystems: pypi
Packages: Zope2, Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTc3aHYtODc5Ni04Y2Nw
HTTP header injection in Plone and Zope2
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTQ4dnYtMnBtcS05ZnZ2
Moderate severity vulnerability that affects Plone and Zope2
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNxcHItN3JtZy03M3Y4
Moderate severity vulnerability that affects Plone and Zope2
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBjd20tOGpjMy1xeHZq
Plone Denial of Service vulnerability
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA1d3ItdnA4Zy1xNXA0
Plone Sandbox Escape
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: almost 6 years ago
Statistics
Advisories: 17,749
Packages: 8,183
Repositories: 5
Ecosystems: 12
Filter by Package
tensorflow 432 tensorflow-cpu 387 tensorflow-gpu 384 django 80 apache-airflow 78 ansible 63 apache-superset 48 plone 42 rdiffweb 42 Pillow 41 salt 38 Plone 36 matrix-synapse 35 vyper 32 opencv-contrib-python 30 opencv-python 30 mlflow 30 Django 21 langchain 18 PaddlePaddle 17 cobbler 17 notebook 15 pillow 15 paddlepaddle 15 cryptography 15 modoboa 14 gradio 14 pyload-ng 13 pyftpdlib 13 nova 13 OctoPrint 12 neutron 12 keystone 12 vantage6 12 calibreweb 11 onionshare-cli 11 twisted 11 urllib3 11 glance 11 Flask-AppBuilder 10 aiohttp 10 ethyca-fides 9 zope 9 wagtail 9 opencv-contrib-python-headless 9 waitress 9 moin 9 opencv-python-headless 9 Zope 9 kiwitcms 9 numpy 8 label-studio 8 aubio 8 python-keystoneclient 7 matrix-sydent 7 pip 7 nautobot 7 scrapy 7 pysaml2 7 lief 7 jupyter-server 7 swift 7 tuf 6 lxml 6 graphite-web 6 ipython 6 Zope2 6 pgadmin4 6 apache-airflow-providers-apache-hive 6 web2py 6 mailman 6 sentry 6 inventree 6 mindsdb 6 Products.CMFPlone 5 whoogle-search 5 ckan 5 feedparser 5 bleach 5 trytond 5 python-gnupg 5 saleor 5 paramiko 5 roundup 5 horizon 5 pyspark 5 lmdb 5 requests 5 PyPDF2 4 transformers 4 FreeTAKServer-UI 4 markdown2 4 yt-dlp 4 httpie 4 oauthenticator 4 buildbot 4 Pygments 4 reportlab 4 jupyterhub 4 Jinja2 4 nltk 4 qutebrowser 4 GitPython 4 keylime 4 grpcio 4 grpc 4 starlette 4 ansible-core 4 datasette 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 aws-iot-device-sdk-v2 4 Flask-Security-Too 4 bottle 4 werkzeug 4 esphome 4 pretix 4 nvflare 4 omero-web 4 awsiotsdk 4 rsa 3 apache-libcloud 3 apache-iotdb 3 pyyaml 3 apache-airflow-providers-apache-spark 3 asyncua 3 io.grpc:grpc-protobuf 3 fava 3 sickrage 3 wger 3 flask 3 keyring 3 indico 3 protobuf 3 pandasai 3 pyarrow 3 mayan-edms 3 asyncssh 3 ray 3 ryu 3 tornado 3 streamlit 3 copyparty 3 Werkzeug 3 django-helpdesk 3 ecdsa 3 sanic 3 tripleo-heat-templates 3 ujson 3 Weblate 3 plone.supermodel 3 plone.app.dexterity 3 plone.app.theming 3 plone.app.event 3 ansible-runner 3 mitmproxy 3 slixmpp 3 clearml 3 docassemble.webapp 3 quokka 3 jwcrypto 3 torchserve 3 onnx 3 sqlparse 3 jupyterlab 3 poetry 3 localstack 3 mistune 3 openvpn-monitor 3 zenml 3 indy-node 3 aim 3 gerapy 3 bitlyshortener 3 pywasm3 3 cinder 3 Products.PluggableAuthService 3 barbican 3 Keystone 3 tripleo-ansible 2 Red-DiscordBot 2 fastapi 2 scancodeio 2 aws-encryption-sdk 2 dbt-core 2 apache-airflow-providers-apache-drill 2 certifi 2 snowflake-connector-python 2 Mezzanine 2 aiohttp-session 2 aws-encryption-sdk-cli 2 in-toto 2 apache-airflow-providers-google 2 scipy 2 starkbank-ecdsa 2 distributed 2 embedchain 2 python-apt 2 sap-xssec 2 org.apache.spark:spark-core 2 langchain-experimental 2