Package impact

python PyPI / plone-app-dexterity

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2020-28736 unknown 5y ago Plone before 5.2.3 allows XXE attacks via a feature that is protected by an unapplied permission of plone.schemaeditor.ManageSchemata (therefore, only available to the Manager role). python
CVE-2020-28735 unknown 5y ago Plone before 5.2.3 allows SSRF attacks via the tracebacks feature (only available to the Manager role). python
CVE-2020-28734 unknown 5y ago Plone before 5.2.3 allows XXE attacks via a feature that is explicitly only available to the Manager role. python