Lucene search

K
osvGoogleOSV:GHSA-35RG-466W-77H3
HistoryJun 18, 2021 - 6:44 p.m.

Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone

2021-06-1818:44:50
Google
osv.dev
14
cross-site scripting
reflected xss
zope
plone
cmfcore
pluggableauthservice

EPSS

0.001

Percentile

36.1%

Zope Products.CMFCore before 2.5.1 and Products.PluggableAuthService before 2.6.2, as used in Plone through 5.2.4 and other products, allow Reflected XSS.

EPSS

0.001

Percentile

36.1%

Related for OSV:GHSA-35RG-466W-77H3