Safety vulnerability ID: 35668
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Chameleon (five.pt) in Plone 5.0rc1 through 5.1a1 allows remote authenticated users to bypass Restricted Python by leveraging permissions to create or edit templates.
Latest version: 6.1.1
The Plone Content Management System
Chameleon (five.pt) in Plone 5.0rc1 through 5.1a1 allows remote authenticated users to bypass Restricted Python by leveraging permissions to create or edit templates.
MLIST:[oss-security] 20160419 Re: CVE Request: Bypass Restricted Python - Plone: http://www.openwall.com/lists/oss-security/2016/04/20/3
CONFIRM:https://plone.org/security/hotfix/20160419/bypass-restricted-python: https://plone.org/security/hotfix/20160419/bypass-restricted-python
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application