Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi plone Security Advisories

Browse all Security Advisories for pypi plone

Loading...
Moderate
GSA_kwCzR0hTQS0zOGc2LXg2anYtandmZs4AArAc
Plone XSS Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1xZmh3LWZ2M2ctdjgzNs4AApAM
Plone has stored XSS in folder contents
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ocHJyLTR2ZnEtZmN4d84AAoi2
Plone XSS in User Fullname Property and File Upload
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1jdndjLWc3ZnctN3hyas4AAf8c
Plone XSS Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS13M3B3LXF4amotNnBycs4AAesc
Plone Authenticated Denial of Service vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 3.7
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1xcGhoLTVmdjUtMm1qas4AAesO
Plone is vulnerable to information exposure via the object manager implementation
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ncnd4LTRwNXYtOWcyZ84AAesQ
Plone is vulnerable to Information Exposure when generating zip archives
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS04OXJxLTI3eHAtdmd2N84AAesK
Plone vulnerable to cross-site scripting
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1tbTMyLWp3NzMtOTIyN84AAesM
Plone is vulnerable to File System Path Exposure
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 3.1
Published: over 2 years ago
High
GSA_kwCzR0hTQS1mNWg5LTNocGYtOWo4bc4AAesP
Plone is vulnerable to email spoofing
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: over 2 years ago
Low
GSA_kwCzR0hTQS14ZmpxLTlyeHEtcGg2bc4AAesN
Plone Denial of Service vulnerability via decompressing large zip archives
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 2.6
Published: over 2 years ago
Low
GSA_kwCzR0hTQS1qNjdqLThocnAtNzZ4bc4AAesL
Plone Multiple open redirect vulnerabilities
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1qanZ3LTNoOWotcDdqZs4AAesI
Plone Improper Access Control Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS02ZmdmLXg3d2ctaHA4cs4AAesG
Plone Unrestricted Filed Manipulation vulnerability via content edit forms
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1yZzUyLWo4N3ctcGY4M84AAeez
Plone Filesystem path information leak
Ecosystems: pypi
Packages: Products.CMFPlone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1mOHBnLXdwNWotcmp4eM4AAeQ5
Plone Information Disclosure
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02dzkzLTRjNHAteHYyeM4AAeRF
Plone Metadata Disclosure
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ocjU5LTM1Y3ItcWY0M84AAeQ8
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS05bTRnLWY0MnEtdnJyaM4AAeQ-
Plone Sandbox Bypass
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1xNDZnLXY3cjQtOXZocs4AAeQ7
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
High
GSA_kwCzR0hTQS1wdmh2LXF3YzgtcjJwZ84AAeQx
Plone Arbitrary File Read
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS01d2h3LTVjbW0tOWp3NM4AAeQz
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS0zZzZ3LTRtN3gtOTd2Ns4AAeQ6
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS0yNWpoLTVoNXItaDMzbc4AAeQy
Plone Sandbox Bypass
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
High
GSA_kwCzR0hTQS1jcTVnLTkyNG0tN2Z4aM4AAeQn
Plone Information Disclosure
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
High
GSA_kwCzR0hTQS1neDZ3LWhjdzMtNXIzN84AAeQm
Plone DoS via Crafted URL
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
High
GSA_kwCzR0hTQS03OWhqLTQ3NGgtdjR4ds4AAeQj
Plone denial of service via RSS Feed Request
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS13NnB3LTVnaDUtNDk1Ms4AAeQY
Plone python code injection
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 8.3
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02ODN3LTg0bTctcDhwd84AAePK
Plone User account enumeration via crafted URL
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS0ycTc1LWY3Y3Atdzg2cc4AAeNT
Plone contains Cross-site Request Forgery
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: over 2 years ago
High
GSA_kwCzR0hTQS05N3JqLXA3OTQtd3E2bc4AAdgt
Plone denial of service via Caching Bypass
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS04NGptLWNwYzUtYzdnN84AAb_b
Plone XSS in Zope ZMI
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS12ZjhnLW0zdnEtNnA0cM4AAYdi
Plone Cross-site Scripting Vulnerability
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02OXZoLTY2Mmotdjk4OM4AAV-F
Plone Open Redirect Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS0yMmptLXAydnYtajJoY84AAV-I
Plone XSS
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS12M2hwLWY4cXItY2YzcM4AAV9r
Plone XSS
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS00NzkzLXc0NHctbTd4bc3grw
Plone Zope cross-site scripting (XSS) vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1oanA1LWh2MzMtcTU4Z82zkw
Plone credentials stored in session cookie
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1oZjI2LXZ2bXgteDhjOM2qvQ
Plone Arbitrary Code Execution via Unsafe Handling of Pickles
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1qY3doLXJqNmotdm03Nc2Bfg
Plone allows remote users to modify arbitrary portraits
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXh2d3YtNnd2eC1weDl4
Plone Open Redirect
Ecosystems: pypi
Packages: Plone, plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 6 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 matrix-synapse 35 moin 35 gradio 34 keystone 31 Pillow 31 opencv-contrib-python 31 opencv-python 31 pillow 26 glance 20 langchain 20 mercurial 18 mindsdb 18 cobbler 18 notebook 17 neutron 16 pyload-ng 16 PaddlePaddle 16 paddlepaddle 16 cryptography 16 calibreweb 15 OctoPrint 15 ethyca-fides 15 modoboa 14 aiohttp 14 lollms 14 pyftpdlib 14 vantage6 13 wagtail 12 twisted 12 roundup 12 swift 12 urllib3 12 zenml 12 waitress 11 trytond 11 horizon 11 onionshare-cli 11 opencv-python-headless 10 opencv-contrib-python-headless 10 nautobot 10 Flask-AppBuilder 10 sentry 10 pyspark 9 cinder 9 zope 9 ryu 9 python-keystoneclient 9 kiwitcms 9 ckan 8 label-studio 8 pgadmin4 8 trac 8 numpy 8 litellm 8 Zope 8 aubio 8 ipython 8 pysaml2 7 Products.CMFPlone 7 jupyter-server 7 matrix-sydent 7 lief 7 scrapy 7 inventree 7 pip 7 ansible-core 6 mage-ai 6 tuf 6 web2py 6 changedetection.io 6 Zope2 6 aim 6 yt-dlp 6 graphite-web 6 mailman 6 requests 6 apache-airflow-providers-apache-hive 6 Moin 6 tornado 6 lxml 6 lmdb 5 torchserve 5 Jinja2 5 werkzeug 5 nltk 5 dtale 5 saleor 5 feedparser 5 omero-web 5 pretix 5 grpc 5 bleach 5 whoogle-search 5 grpcio 5 paramiko 5 python-gnupg 5 ait-core 5 jupyterhub 5 langchain-experimental 5 oauthenticator 5 Werkzeug 5 Scrapy 4 nvflare 4 jupyterlab 4 Radicale 4 apache-iotdb 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 aws-iot-device-sdk-v2 4 awsiotsdk 4 mobsf 4 esphome 4 barbican 4 reportlab 4 langchain-community 4 Flask-Security-Too 4 httpie 4 qutebrowser 4 indico 4 markdown2 4 Weblate 4 GitPython 4 FreeTAKServer-UI 4 transformers 4 onnx 4 bottle 4 wasmtime 4 indy-node 4 Pygments 4 PyPDF2 4 codechecker 4 keylime 4 tripleo-heat-templates 4 streamlit 4 pywasm3 4 apache-submarine 4 open-webui 4 langflow 4 Nova 4 jwcrypto 4 Keystone 4 buildbot 4 dbt-core 4 django-tinymce 3 keystonemiddleware 3 micropython-copy 3 jupyter-server-proxy 3 asyncssh 3 pandasai 3 sosreport 3 datasette 3 ajenti 3 scikit-learn 3 sanic 3 Twisted 3 certifi 3 snowflake-connector-python 3 pyyaml 3 micropython-io 3 openc3 3 ray 3 homeassistant 3 openc3 3 wasmtime 3 poetry 3 mistune 3 wasm3 3 ujson 3 localstack 3 sqlparse 3 tinymce 3 tinymce/tinymce 3 clearml 3 AccessControl 3 TinyMCE 3 django-cms 3 copyparty 3 torch 3 anki 3 mitmproxy 3 mysql-connector-python 3 apache-libcloud 3 pycrypto 3 sickrage 3 quokka 3 httplib2 3