Safety vulnerability ID: 61215
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Plone 2.0.5, 2.1.2, and 2.5-beta1 does not restrict access to the (1) changeMemberPortrait, (2) deletePersonalPortrait, and (3) testCurrentPassword methods, which allows remote attackers to modify portraits.
Latest version: 6.1.1
The Plone Content Management System
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application