Safety vulnerability ID: 39695
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Zope Products.CMFCore before 2.5.1 and Products.PluggableAuthService before 2.6.2, as used in Plone through 5.2.4 and other products, allow Reflected XSS.
Latest version: 1.11.0
Pluggable Zope2 authentication / authorization framework
-------------------
- Tighten down security on several login string transformation methods
(`88
<https://github.com/zopefoundation/Products.PluggableAuthService/issues/88>`_)
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application