Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi plone Security Advisories

Loading...
Moderate
GSA_kwCzR0hTQS0zOGc2LXg2anYtandmZs4AArAc
Plone XSS Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1ocHJyLTR2ZnEtZmN4d84AAoi2
Plone XSS in User Fullname Property and File Upload
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1jdndjLWc3ZnctN3hyas4AAf8c
Plone XSS Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS13M3B3LXF4amotNnBycs4AAesc
Plone Authenticated Denial of Service vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 3.7
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1xcGhoLTVmdjUtMm1qas4AAesO
Plone is vulnerable to information exposure via the object manager implementation
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1mNWg5LTNocGYtOWo4bc4AAesP
Plone is vulnerable to email spoofing
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1ncnd4LTRwNXYtOWcyZ84AAesQ
Plone is vulnerable to Information Exposure when generating zip archives
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: almost 2 years ago
Low
GSA_kwCzR0hTQS1tbTMyLWp3NzMtOTIyN84AAesM
Plone is vulnerable to File System Path Exposure
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 3.1
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS04OXJxLTI3eHAtdmd2N84AAesK
Plone Multiple cross-site scripting (XSS) vulnerabilities
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.0
Published: almost 2 years ago
Low
GSA_kwCzR0hTQS14ZmpxLTlyeHEtcGg2bc4AAesN
Plone Denial of Service vulnerability via decompressing large zip archives
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 2.6
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1qNjdqLThocnAtNzZ4bc4AAesL
Plone Multiple open redirect vulnerabilities
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 4.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1qanZ3LTNoOWotcDdqZs4AAesI
Plone Improper Access Control Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02ZmdmLXg3d2ctaHA4cs4AAesG
Plone Unrestricted Filed Manipulation vulnerability via content edit forms
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1yZzUyLWo4N3ctcGY4M84AAeez
Plone Filesystem path information leak
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1mOHBnLXdwNWotcmp4eM4AAeQ5
Plone Information Disclosure
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02dzkzLTRjNHAteHYyeM4AAeRF
Plone Metadata Disclosure
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Low
GSA_kwCzR0hTQS1ocjU5LTM1Y3ItcWY0M84AAeQ8
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS05bTRnLWY0MnEtdnJyaM4AAeQ-
Plone Sandbox Bypass
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1xNDZnLXY3cjQtOXZocs4AAeQ7
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS01d2h3LTVjbW0tOWp3NM4AAeQz
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1wdmh2LXF3YzgtcjJwZ84AAeQx
Plone Arbitrary File Read
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS0yNWpoLTVoNXItaDMzbc4AAeQy
Plone Sandbox Bypass
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS0zZzZ3LTRtN3gtOTd2Ns4AAeQ6
Plone Cross-site scripting Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1neDZ3LWhjdzMtNXIzN84AAeQm
Plone DoS via Crafted URL
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1jcTVnLTkyNG0tN2Z4aM4AAeQn
Plone Information Disclosure
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS03OWhqLTQ3NGgtdjR4ds4AAeQj
Plone denial of service via RSS Feed Request
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS13NnB3LTVnaDUtNDk1Ms4AAeQY
Plone python code injection
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02ODN3LTg0bTctcDhwd84AAePK
Plone User account enumeration via crafted URL
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS0ycTc1LWY3Y3Atdzg2cc4AAeNT
Plone contains Cross-site Request Forgery
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS05N3JqLXA3OTQtd3E2bc4AAdgt
Plone denial of service via Caching Bypass
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS04NGptLWNwYzUtYzdnN84AAb_b
Plone XSS in Zope ZMI
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS12ZjhnLW0zdnEtNnA0cM4AAYdi
Plone Cross-site Scripting Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1mcTlyLThqcG0tMjIyMs4AAYdL
Plone Header Injection
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 6.3
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS0yMmptLXAydnYtajJoY84AAV-I
Plone XSS
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02OXZoLTY2Mmotdjk4OM4AAV-F
Plone Open Redirect Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS12M2hwLWY4cXItY2YzcM4AAV9r
Plone XSS
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1xYzU3LWgyZjctcDRoeM4AAR2e
Plone Unauthorized Access Vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS00NzkzLXc0NHctbTd4bc3grw
Plone Zope cross-site scripting (XSS) vulnerability
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1oanA1LWh2MzMtcTU4Z82zkw
Plone credentials stored in session cookie
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1oZjI2LXZ2bXgteDhjOM2qvQ
Plone Arbitrary Code Execution via Unsafe Handling of Pickles
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1qY3doLXJqNmotdm03Nc2Bfg
Plone allows remote users to modify arbitrary portraits
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXh2d3YtNnd2eC1weDl4
Plone Open Redirect
Ecosystems: pypi
Packages: plone
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: over 5 years ago
Statistics
Advisories: 17,986
Packages: 8,213
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 432 tensorflow-cpu 387 tensorflow-gpu 384 django 80 apache-airflow 78 ansible 63 apache-superset 48 rdiffweb 42 plone 42 Pillow 41 salt 38 Plone 36 matrix-synapse 35 vyper 32 opencv-contrib-python 30 opencv-python 30 mlflow 30 Django 21 langchain 18 PaddlePaddle 17 cobbler 17 pillow 15 cryptography 15 paddlepaddle 15 notebook 15 modoboa 14 gradio 14 pyload-ng 14 pyftpdlib 13 nova 13 OctoPrint 12 keystone 12 neutron 12 vantage6 12 calibreweb 11 twisted 11 onionshare-cli 11 urllib3 11 glance 11 Flask-AppBuilder 10 aiohttp 10 opencv-contrib-python-headless 9 ethyca-fides 9 moin 9 kiwitcms 9 Zope 9 opencv-python-headless 9 zope 9 wagtail 9 waitress 9 label-studio 8 numpy 8 aubio 8 lief 7 pysaml2 7 scrapy 7 nautobot 7 jupyter-server 7 python-keystoneclient 7 matrix-sydent 7 swift 7 pip 7 mailman 6 graphite-web 6 pgadmin4 6 inventree 6 sentry 6 ipython 6 lxml 6 Zope2 6 apache-airflow-providers-apache-hive 6 mindsdb 6 web2py 6 tuf 6 bleach 5 saleor 5 requests 5 trytond 5 feedparser 5 lmdb 5 python-gnupg 5 paramiko 5 whoogle-search 5 Products.CMFPlone 5 horizon 5 ckan 5 roundup 5 pyspark 5 jupyterhub 4 yt-dlp 4 datasette 4 ansible-core 4 reportlab 4 starlette 4 keylime 4 grpcio 4 bottle 4 grpc 4 markdown2 4 Pygments 4 werkzeug 4 qutebrowser 4 awsiotsdk 4 FreeTAKServer-UI 4 transformers 4 aws-iot-device-sdk-v2 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 Flask-Security-Too 4 omero-web 4 oauthenticator 4 pretix 4 PyPDF2 4 esphome 4 nvflare 4 httpie 4 nltk 4 buildbot 4 GitPython 4 Jinja2 4 rsa 3 copyparty 3 Werkzeug 3 localstack 3 cinder 3 apache-iotdb 3 flask 3 sanic 3 fava 3 pyarrow 3 poetry 3 mistune 3 asyncssh 3 jupyterlab 3 Products.PluggableAuthService 3 ecdsa 3 tornado 3 ansible-runner 3 ray 3 aim 3 indy-node 3 openvpn-monitor 3 barbican 3 ujson 3 torchserve 3 jwcrypto 3 ryu 3 mitmproxy 3 bitlyshortener 3 indico 3 apache-airflow-providers-apache-spark 3 plone.app.event 3 plone.app.theming 3 plone.app.dexterity 3 plone.supermodel 3 mayan-edms 3 gerapy 3 pyyaml 3 pandasai 3 tripleo-heat-templates 3 protobuf 3 django-helpdesk 3 apache-libcloud 3 onnx 3 zenml 3 sickrage 3 sqlparse 3 slixmpp 3 asyncua 3 clearml 3 io.grpc:grpc-protobuf 3 docassemble.webapp 3 wger 3 keyring 3 streamlit 3 quokka 3 pywasm3 3 Keystone 3 Weblate 3 wasm3 2 SQLAlchemy 2 flaskcode 2 Google.Protobuf 2 google/protobuf 2 github.com/protocolbuffers/protobuf 2 ubi-reader 2 pyopenssl 2 org.apache.spark:spark-core 2 cabot 2 ajenti 2 pymongo 2 aws-encryption-sdk-cli 2 httplib2 2 starkbank-ecdsa 2 Moin 2 apache-airflow-providers-apache-sqoop 2 certifi 2 mobsf 2 dbt-core 2 typed-ast 2 python-cjson 2