CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Zope 1Products.pluggableauthservice Nov 21, 2024 Mar 8, 2021 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Products.PluggableAuthService is a pluggable Zope authentication and authorization framework. In Products.PluggableAuthService before version 2.6.0 there is an open redirect vulnerability. A maliciously crafted link to t...Show more |
2Plone Zope2Plone Products.pluggableauthserviceNov 21, 2024 Mar 8, 2021 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Products.PluggableAuthService is a pluggable Zope authentication and authorization framework. In Products.PluggableAuthService before version 2.6.0 there is an information disclosure vulnerability - everyone can list the...Show more |