Safety vulnerability ID: 37788
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking. See: CVE-2020-7940.
Latest version: 6.1.1
The Plone Content Management System
Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking.
MISC:https://plone.org/security/hotfix/20200121: https://plone.org/security/hotfix/20200121
MISC:https://plone.org/security/hotfix/20200121/password-strength-checks-were-not-always-checked: https://plone.org/security/hotfix/20200121/password-strength-checks-were-not-always-checked
MISC:https://www.openwall.com/lists/oss-security/2020/01/22/1: https://www.openwall.com/lists/oss-security/2020/01/22/1
MLIST:[oss-security] 20200124 Re: Plone security hotfix 20200121: http://www.openwall.com/lists/oss-security/2020/01/24/1
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application