QID 982270
QID 982270: Python (pip) Security Update for Plone (GHSA-hm2p-fhwx-9285)
Plone through 5.2.4 allows remote authenticated managers to perform disk I/O via crafted keyword arguments to the ReStructuredText transform in a Python script.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hm2p-fhwx-9285 for updates pertaining to this vulnerability.
Vendor References
- GHSA-hm2p-fhwx-9285 -
github.com/advisories/GHSA-hm2p-fhwx-9285
CVEs related to QID 982270
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hm2p-fhwx-9285 | Plone |
|