
High Security Advisories for plone in pypi Clear Filters
High
over 3 years ago
Plone anonymous access to sub-objects in CMFEditions where KwAsAttributes classes were publishable
pypi
Plone
High
over 3 years ago
Plone Unrestricted Filed Manipulation vulnerability via content edit forms
pypi
plone
High
over 3 years ago
Plone allows anonymous users to reset any users password through the web via Password Reset Tool
pypi
Plone
High
over 4 years ago
Improper Restriction of XML External Entity Reference in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
High
over 4 years ago
SSRF attacks via tracebacks in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
High
over 4 years ago
Improper Restriction of XML External Entity Reference in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
High
about 7 years ago
Plone and plone.app.users allow remote authenticated users to modify the properties of arbitrary accounts
pypi
Plone, plone.app.users
High
about 7 years ago
Plone and Zope2 vulnerable to unauthorized access to restricted attributes
pypi
Plone, Zope2
High
about 7 years ago
Plone and Zope2 do not reseed pseudo-random number generator
pypi
Plone, Zope2