Weak Password Security in Plone by Plone Foundation
CVE-2020-7940
7.5HIGH
What is CVE-2020-7940?
Certain versions of Plone, ranging from 4.3 to 5.2.0, are affected by a security vulnerability that allows users to bypass password strength requirements on various forms. This flaw permits the setting of weak passwords, which increases the risk of password cracking and unauthorized access to accounts. Organizations utilizing these versions may face elevated security threats unless they implement the necessary upgrades or hotfixes to mitigate this risk.
