QID 997250
Date Published: 2024-02-15
QID 997250: Python (Pip) Security Update for zope (GHSA-c3rp-4cjh-cp38)
Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-c3rp-4cjh-cp38 for updates and patch information.
Vendor References
- GHSA-c3rp-4cjh-cp38 -
github.com/advisories/GHSA-c3rp-4cjh-cp38
CVEs related to QID 997250
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-c3rp-4cjh-cp38 | zope |
|