Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
pypi Plone Security Advisories
Browse all Security Advisories for pypi Plone
Loading...
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: 9 months ago
GSA_kwCzR0hTQS14ZzVwLTh3ZzUtcmh4bc4AA5yI
Phone information disclosure vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: 9 months ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.0
Published: 10 months ago
GSA_kwCzR0hTQS01eGZ4LTU1eDQtajIyM84AA4jV
Cross-Frame Scripting vulnerability has been found on Plone CMSEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.0
Published: 10 months ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: almost 2 years ago
GSA_kwCzR0hTQS00N3A1LXAzanctdzc4d84AAxtz
Server-Side Request Forgery in Plone CMSEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: almost 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: over 2 years ago
GSA_kwCzR0hTQS1oaG1mLTdyZ2ctZ2N3Nc4AAjY6
Plone SQL Injection VulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS04Mmo5LXdmY2YtOXYyaM4AAjYw
Plone Open Redirect VulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 2 years ago
GSA_kwCzR0hTQS04bWM0LTJ4cmMtZzU4Ms4AAjY8
Plone cross site scripting (XSS)Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 2 years ago
Critical
Ecosystems: pypi
Packages: plone.app.contenttypes, Plone
Source: GitHub Advisory Database
Blast Radius: 18.8
Published: over 2 years ago
GSA_kwCzR0hTQS13Nmc5LXhjY2MtMzQ3aM4AAjY7
Plone Unauthenticated Write VulnerabilityEcosystems: pypi
Packages: plone.app.contenttypes, Plone
Source: GitHub Advisory Database
Blast Radius: 18.8
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS1jdzU4LWdwZ3ctaHd4Ms4AAjYs
Plone allows weak passwordsEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone, plone.restapi
Source: GitHub Advisory Database
Blast Radius: 18.9
Published: over 2 years ago
GSA_kwCzR0hTQS1jamczLXEyNGgtOXF3Zs4AAjY0
Plone Privilege EscallationEcosystems: pypi
Packages: Plone, plone.restapi
Source: GitHub Advisory Database
Blast Radius: 18.9
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS1xajd4LXdtOXEtcWp4OM4AAgL1
Plone Cross-site Scripting vulnerability in PortalTransformsEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS1wd2dtLWp2cXYtNnY4cM4AAf3k
Plone anonymous access to sub-objects in CMFEditions where KwAsAttributes classes were publishableEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
GSA_kwCzR0hTQS1wd3BxLTYzMmctaDQ5Z84AAesV
Plone Privilege escalation due improper authorizationEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 2 years ago
GSA_kwCzR0hTQS1xanhmLTZwcjgtajg3ds4AAesJ
Plone's authenticated users able to alter their password despite of policy definitionEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Products.CMFPlone, Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
GSA_kwCzR0hTQS00dnI4LXI3cXItZnB2cc4AAeeZ
Plone Privilege escalation through exposed underlying APIEcosystems: pypi
Packages: Products.CMFPlone, Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
GSA_kwCzR0hTQS1mOHBnLXdwNWotcmp4eM4AAeQ5
Plone Information DisclosureEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS1ocjU5LTM1Y3ItcWY0M84AAeQ8
Plone Cross-site scripting VulnerabilityEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
GSA_kwCzR0hTQS05bTRnLWY0MnEtdnJyaM4AAeQ-
Plone Sandbox BypassEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
GSA_kwCzR0hTQS02dzkzLTRjNHAteHYyeM4AAeRF
Plone Metadata DisclosureEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS1wdmh2LXF3YzgtcjJwZ84AAeQx
Plone Arbitrary File ReadEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS1xNDZnLXY3cjQtOXZocs4AAeQ7
Plone Cross-site scripting VulnerabilityEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
GSA_kwCzR0hTQS0yNWpoLTVoNXItaDMzbc4AAeQy
Plone Sandbox BypassEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS0zZzZ3LTRtN3gtOTd2Ns4AAeQ6
Plone Cross-site scripting VulnerabilityEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS01d2h3LTVjbW0tOWp3NM4AAeQz
Plone Cross-site scripting VulnerabilityEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS1jcTVnLTkyNG0tN2Z4aM4AAeQn
Plone Information DisclosureEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.1
Published: over 2 years ago
GSA_kwCzR0hTQS03aHhjLW13eDctNWhtY84AAePM
Plone Code Injection vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.1
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 8.3
Published: over 2 years ago
GSA_kwCzR0hTQS1jeHc3LTg1eG0tM3hyY84AAePN
Plone Code Injection vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 8.3
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS13cmYyLTJyY2gtY21yOc4AAePJ
Plone is vulnerable to denial of serviceEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
GSA_kwCzR0hTQS13cHJyLW1jNTQtYzYycc4AAeNO
Exposure of Sensitive Information in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS05N3JqLXA3OTQtd3E2bc4AAdgt
Plone denial of service via Caching BypassEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.2
Published: over 2 years ago
GSA_kwCzR0hTQS1xcWdqLTIyZ3ItNzN2eM4AAb6z
Plone vulnerable to privilege escalation in WebDAVEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
GSA_kwCzR0hTQS12NHZqLTQ5bTUtd2pod84AAb6c
Plone vulnerable to unauthorized disclosure of site contentEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
GSA_kwCzR0hTQS02aDh4LTczZngtcTJoOc4AAb6U
Chameleon in Plone allows Authentication BypassEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
Critical
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.7
Published: over 2 years ago
GSA_kwCzR0hTQS0zdjI4LTlqanAtNGc1d84AAahz
Plone Privilege Escalation VulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.7
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS12ZjhnLW0zdnEtNnA0cM4AAYdi
Plone Cross-site Scripting VulnerabilityEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 5.0
Published: over 2 years ago
GSA_kwCzR0hTQS05ODRtLXJqMjgtOGM2eM4AAYda
Plone unauthorized member addition vulnerabilityEcosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 5.0
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS1mcTlyLThqcG0tMjIyMs4AAYdL
Plone Header InjectionEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: over 2 years ago
GSA_kwCzR0hTQS1wM3FtLTQ0Y2YtZjhxeM4AAYcH
Plone vulnerable to cross-site request forgeryEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 2 years ago
GSA_kwCzR0hTQS04NTlqLTY2OHYtbXJyNs4AAXif
Products.CMFPlone XSS in profile home_page propertyEcosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS04ZzcyLWdxNjgtNmdxaM4AAXhU
Products.CMFPlone Open Redirect VulnerabilityEcosystems: pypi
Packages: Plone, Products.CMFPlone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
GSA_kwCzR0hTQS01NnAzLXJycDQtMmo4Ms4AAWK2
Plone Open Redirection vulnerability via next parameterEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
GSA_kwCzR0hTQS1tN2Y5LTY1d3ItcHdjaM4AAV9u
Plone vulnerable to filesystem information leakEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS1wcDRjLTI2OTItN2YzN84AAV9s
Plone Cross-site Scripting (XSS) vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
GSA_kwCzR0hTQS1jaHZ3LWdqeGYtZjhtY84AAV9q
Plone vulnerable to Cross-site ScriptingEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: over 2 years ago
GSA_kwCzR0hTQS1xYzU3LWgyZjctcDRoeM4AAR2e
Plone Unauthorized Access VulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS00NmY5LWY4am0tbXcyeM2_OQ
Plone Cross-site Scripting vulnerability in the LiveSearch moduleEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS01OTNjLWozNDgtZjNnds2ziw
Plone Improper Session ManagementEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS1tcTNxLWpqcGgtcnA1cM2zhA
Plone CMS Improper Session ManagementEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS00ajN3LWc2MngtaHJjcM2vAg
Plone Cross-site request forgery (CSRF)Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS1yN2o0LTgyeHctOG05cM2Kqg
Plone allows a user to masquerade as a groupEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS01aGNoLXY1cHEteDRxcM2KqQ
Plone allows anonymous users to reset any users password through the web via Password Reset ToolEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
Ecosystems: pypi
Packages: Plone, Products.PluggableAuthService, Products.CMFCore
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTM1cmctNDY2dy03N2gz
Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, PloneEcosystems: pypi
Packages: Plone, Products.PluggableAuthService, Products.CMFCore
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 3 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWdjOWctNjdjcS1wN3Y0
Server-Side Request Forgery in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 3 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTRtZzQtd3ZteC01MzMy
Server-Side Request Forgery in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 3 years ago
Critical
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhtMnAtZmh3eC05Mjg1
Incorrect Permission Assignment for Critical Resource in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 3 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJtcHYtcmNwNi12OHdj
Cross-site scripting in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhtMmgtZjQ1Ni02ajg4
Cross-site scripting in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZqNjctdzNtNC1yZm1w
Cross-site scripting in PloneEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 3 years ago
High
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTJjOGMtODR3Mi1qMzhq
Improper Restriction of XML External Entity Reference in PloneEcosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
High
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXg3d2YtNW1qYy02eDc2
SSRF attacks via tracebacks in PloneEcosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
High
Ecosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdxNngtZzY4NS13NWYy
Improper Restriction of XML External Entity Reference in PloneEcosystems: pypi
Packages: plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Source: GitHub Advisory Database
Blast Radius: 25.9
Published: over 3 years ago
Moderate
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXh2d3YtNnd2eC1weDl4
Plone Open RedirectEcosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 6 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg2aHEtYzg5Ni13ODgy
Plone Cross-site Scripting vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 4.6
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone, plone.app.users
Source: GitHub Advisory Database
Blast Radius: 10.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTJxeDgtNTg5ai1nY3B4
Plone and plone.app.users allow remote authenticated users to modify the properties of arbitrary accountsEcosystems: pypi
Packages: Plone, plone.app.users
Source: GitHub Advisory Database
Blast Radius: 10.3
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBycjUtcGZyOC1xOWYz
Plone allows remote attackers to read hidden folder contentsEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTg3OXItN2Yzdy04amoz
Plone and Zope2 vulnerable to unauthorized access to restricted attributesEcosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Zope2, Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA2aDktaHBjZy1jNmdt
High severity vulnerability that affects Plone and Zope2Ecosystems: pypi
Packages: Zope2, Plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTc3aHYtODc5Ni04Y2Nw
HTTP header injection in Plone and Zope2Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTQ4dnYtMnBtcS05ZnZ2
Plone and Zope2 do not reseed pseudo-random number generatorEcosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNxcHItN3JtZy03M3Y4
Plone and Zope2 affected by Race ConditionEcosystems: pypi
Packages: Plone, Zope2
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
Moderate
Ecosystems: pypi
Packages: Plone, Products.CMFPlone, Products.PasswordResetTool
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA3aDktdmY5Mi01Zmo1
Cross-site scripting in Products.CMFPlone and Products.PasswordResetToolEcosystems: pypi
Packages: Plone, Products.CMFPlone, Products.PasswordResetTool
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 6 years ago
High
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBjd20tOGpjMy1xeHZq
Plone Denial of Service vulnerabilityEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 6 years ago
Moderate
Ecosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 6 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA1d3ItdnA4Zy1xNXA0
Plone Sandbox EscapeEcosystems: pypi
Packages: Plone
Source: GitHub Advisory Database
Blast Radius: 3.6
Published: over 6 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 6
Ecosystems: 12
Packages: 9,040
Repositories: 6
Ecosystems: 12
Filter by Severity
Filter by Ecosystem
Filter by Package
tensorflow
433
tensorflow-gpu
427
tensorflow-cpu
423
Django
100
apache-airflow
85
Plone
72
ansible
63
salt
56
apache-superset
51
nova
47
mlflow
46
django
44
rdiffweb
42
plone
41
vyper
38
matrix-synapse
35
moin
35
gradio
34
Pillow
31
opencv-contrib-python
31
keystone
31
opencv-python
31
pillow
26
langchain
20
glance
20
mindsdb
18
mercurial
18
cobbler
18
notebook
17
neutron
16
cryptography
16
PaddlePaddle
16
pyload-ng
16
paddlepaddle
16
calibreweb
15
OctoPrint
15
ethyca-fides
15
aiohttp
14
pyftpdlib
14
lollms
14
modoboa
14
vantage6
13
roundup
12
urllib3
12
wagtail
12
twisted
12
swift
12
zenml
12
waitress
11
horizon
11
trytond
11
onionshare-cli
11
sentry
10
Flask-AppBuilder
10
opencv-contrib-python-headless
10
nautobot
10
opencv-python-headless
10
kiwitcms
9
pyspark
9
zope
9
ryu
9
python-keystoneclient
9
cinder
9
ckan
8
numpy
8
litellm
8
label-studio
8
ipython
8
aubio
8
pgadmin4
8
trac
8
Zope
8
pysaml2
7
jupyter-server
7
Products.CMFPlone
7
scrapy
7
matrix-sydent
7
pip
7
lief
7
inventree
7
tornado
6
web2py
6
mage-ai
6
Moin
6
Zope2
6
apache-airflow-providers-apache-hive
6
lxml
6
requests
6
yt-dlp
6
graphite-web
6
tuf
6
aim
6
ansible-core
6
mailman
6
changedetection.io
6
omero-web
5
nltk
5
paramiko
5
bleach
5
Werkzeug
5
whoogle-search
5
feedparser
5
dtale
5
lmdb
5
ait-core
5
jupyterhub
5
langchain-experimental
5
torchserve
5
werkzeug
5
pretix
5
grpc
5
Jinja2
5
python-gnupg
5
grpcio
5
oauthenticator
5
saleor
5
Pygments
4
pywasm3
4
mobsf
4
wasmtime
4
reportlab
4
indico
4
apache-iotdb
4
Nova
4
Radicale
4
jupyterlab
4
barbican
4
jwcrypto
4
Weblate
4
nvflare
4
Keystone
4
langflow
4
httpie
4
open-webui
4
markdown2
4
awsiotsdk
4
aws-iot-device-sdk-v2
4
indy-node
4
PyPDF2
4
FreeTAKServer-UI
4
keylime
4
Flask-Security-Too
4
transformers
4
software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk
4
esphome
4
buildbot
4
codechecker
4
tripleo-heat-templates
4
onnx
4
GitPython
4
dbt-core
4
langchain-community
4
apache-submarine
4
qutebrowser
4
Scrapy
4
bottle
4
streamlit
4
mysql-connector-python
3
certifi
3
pyarrow
3
protobuf
3
openstack-heat
3
localstack
3
django-cms
3
slixmpp
3
ajenti
3
httplib2
3
sosreport
3
sqlparse
3
SQLAlchemy
3
python-jose
3
Products.PluggableAuthService
3
ujson
3
pandasai
3
pycrypto
3
wasm3
3
django-helpdesk
3
openc3
3
openc3
3
micropython-copy
3
micropython-io
3
gerapy
3
anki
3
fava
3
Red-DiscordBot
3
mayan-edms
3
vanna
3
mistune
3
dulwich
3
snowflake-connector-python
3
apache-airflow-providers-apache-spark
3
clearml
3
starlette
3
apache-libcloud
3
ydata-profiling
3
mitmproxy
3
docassemble.webapp
3
poetry
3
wger
3
quokka
3