Safety vulnerability ID: 25997
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Plone 4.2 and 4.0.6 include a fix for CVE-2011-1949: Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-2422.
https://plone.org/security/hotfix/20110531/persistent-xss
Latest version: 6.1.1
The Plone Content Management System
Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-2422.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application