plone Summary
Latest vulnerabilities published by plone
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
NodeJS Server Vulnerability in Volto Frontend for Plone CMS
CVE-2025-58047PloneVolto7.5HIGHPlone v6.0.9 vulnerability allows remote attackers to view and list all files
CVE-2024-22889PlonePlone7.5HIGHUnauthenticated attackers can execute dangerous actions via HTTP PUT and DELETE methods
CVE-2024-23756PlonePlone7.5HIGHRemote Code Execution Vulnerability in Plone Docker Image
CVE-2024-23054PlonePlone Docker Official ...9.8CRITICALRemote Code Execution in Plone Docker Official Image 5.2.13
CVE-2024-23055PlonePlone Docker Official ...6.1MEDIUMCross-Frame Scripting (XFS) on Plone CMS
CVE-2024-0669Plone CmsPlone Cms6.3MEDIUMplone.namedfile vulnerable to Stored Cross Site Scripting with SVG images
CVE-2023-41048PlonePlone.namedfile3.7LOWplone.rest vulnerable to Denial of Service when ++api++ is used many times
CVE-2023-42457PlonePlone.rest7.5HIGHSensitive Information Exposure in Plone CMS
CVE-2021-33926PlonePlone8.8HIGHCross-Site Scripting in Plone Site by User Profile Configuration
CVE-2017-1000482PlonePlone5.4MEDIUMImproper Authentication in Volto
CVE-2022-24740PloneVolto5MEDIUMCross-site Scripting and Open Redirect in Products.ATContentTypes
CVE-2022-23599PlonePlone6.1MEDIUMURL Redirection to Untrusted Site ('Open Redirect') in Products.isurlinportal
CVE-2021-32806PloneProducts.isurlinportal6.5MEDIUMCross-Site Scripting Vulnerability in Plone by Plone Foundation
CVE-2021-35959PlonePlone5.4MEDIUMReflected Cross-Site Scripting Vulnerability in Plone by Zope Products
CVE-2021-33507PlonePlone6.1MEDIUMStored Cross-Site Scripting in Plone Content Management System
CVE-2021-33508PlonePlone5.4MEDIUMRemote Code Execution Flaw in Plone CMS Affecting Authentication Managers
CVE-2021-33509PlonePlone9.9CRITICALServer-Side Request Forgery Vulnerability in Plone by Plone Foundation
CVE-2021-33510PlonePlone4.3MEDIUMServer-side Request Forgery in Plone Affects Multiple Themes and Frameworks
CVE-2021-33511PlonePlone7.5HIGHStored XSS Vulnerability in Plone by File Uploading SVG or HTML Files
CVE-2021-33512PlonePlone5.4MEDIUMCross-Site Scripting Vulnerability in Plone by Plone Foundation
CVE-2021-33513PlonePlone5.4MEDIUMStored Cross-Site Scripting Vulnerability in Plone CMS by Plone Foundation
CVE-2021-3313PlonePlone5.4MEDIUMStored Cross-Site Scripting Issue in Plone CMS by Plone Foundation
CVE-2021-29002PlonePlone5.4MEDIUMXXE Attack Vulnerability in Plone by Plone Foundation
CVE-2020-28736PlonePlone8.8HIGHServer-Side Request Forgery Vulnerability in Plone by Plone Foundation
CVE-2020-28735PlonePlone8.8HIGH