Safety vulnerability ID: 40886
The information on this page was manually curated by our Cybersecurity Intelligence Team.
In Plone 5.0 through 5.2.4, Editors are vulnerable to XSS in the folder contents view, if a Contributor has created a folder with a SCRIPT tag in the description field.
Latest version: 6.1.1
The Plone Content Management System
In Plone 5.0 through 5.2.4, Editors are vulnerable to XSS in the folder contents view, if a Contributor has created a folder with a SCRIPT tag in the description field. See CVE-2021-35959.
MISC:https://plone.org/security/hotfix/20210518/stored-xss-in-folder-contents: https://plone.org/security/hotfix/20210518/stored-xss-in-folder-contents
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application