QID 997248
Date Published: 2024-02-15
QID 997248: Python (Pip) Security Update for zope (GHSA-7944-h5rw-qmjx)
ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-7944-h5rw-qmjx for updates and patch information.
Vendor References
- GHSA-7944-h5rw-qmjx -
github.com/advisories/GHSA-7944-h5rw-qmjx
CVEs related to QID 997248
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7944-h5rw-qmjx | zope |
|