QID 996775
Date Published: 2024-01-23
QID 996775: Python (Pip) Security Update for Plone (GHSA-5xfx-55x4-j223)
A Cross-Frame Scripting vulnerability has been found on Plone CMS affecting version below 6.0.5. An attacker could store a malicious URL to be opened by an administrator and execute a malicios iframe element.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-5xfx-55x4-j223 for updates and patch information.
Vendor References
- GHSA-5xfx-55x4-j223 -
github.com/advisories/GHSA-5xfx-55x4-j223
CVEs related to QID 996775
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-5xfx-55x4-j223 | Plone |
|