Vulnerability Name CVE Severity
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-7136) CVE-2016-7136
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-7138) CVE-2016-7138
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-7139) CVE-2016-7139
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-7140) CVE-2016-7140
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-7147) CVE-2016-7147
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-1000482) CVE-2017-1000482
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-7937) CVE-2020-7937
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-3313) CVE-2021-3313
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-29002) CVE-2021-29002
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-33507) CVE-2021-33507
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-33508) CVE-2021-33508
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-33512) CVE-2021-33512
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-33513) CVE-2021-33513
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-35959) CVE-2021-35959
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-23599) CVE-2022-23599
Plone CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-7939) CVE-2020-7939
Plone CMS Improper Privilege Management Vulnerability (CVE-2020-7938) CVE-2020-7938
Plone CMS Improper Privilege Management Vulnerability (CVE-2020-7941) CVE-2020-7941
Plone CMS Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2024-0669) CVE-2024-0669
Plone CMS Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-28734) CVE-2020-28734
Plone CMS Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-28736) CVE-2020-28736
Plone CMS Incorrect Default Permissions Vulnerability (CVE-2024-22889) CVE-2024-22889
Plone CMS Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-33509) CVE-2021-33509
Plone CMS Missing Authentication for Critical Function Vulnerability (CVE-2020-35190) CVE-2020-35190
Plone CMS Other Vulnerability (CVE-2006-1711) CVE-2006-1711
Plone CMS Other Vulnerability (CVE-2006-4247) CVE-2006-4247
Plone CMS Other Vulnerability (CVE-2006-4249) CVE-2006-4249
Plone CMS Other Vulnerability (CVE-2012-5486) CVE-2012-5486
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1950) CVE-2011-1950
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4030) CVE-2011-4030
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5487) CVE-2012-5487
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5489) CVE-2012-5489
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5498) CVE-2012-5498
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5501) CVE-2012-5501
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4191) CVE-2013-4191
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4193) CVE-2013-4193
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4196) CVE-2013-4196
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4198) CVE-2013-4198
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4200) CVE-2013-4200
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-7061) CVE-2013-7061
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-7317) CVE-2015-7317
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-4041) CVE-2016-4041
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-4043) CVE-2016-4043
Plone CMS Resource Management Errors Vulnerability (CVE-2012-5496) CVE-2012-5496
Plone CMS Resource Management Errors Vulnerability (CVE-2012-5499) CVE-2012-5499
Plone CMS Resource Management Errors Vulnerability (CVE-2012-5506) CVE-2012-5506
Plone CMS Resource Management Errors Vulnerability (CVE-2013-4188) CVE-2013-4188
Plone CMS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2020-28735) CVE-2020-28735
Plone CMS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-33510) CVE-2021-33510
Plone CMS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-33511) CVE-2021-33511
Plone CMS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-33926) CVE-2021-33926
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2016-7137) CVE-2016-7137
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-1000481) CVE-2017-1000481
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-1000484) CVE-2017-1000484
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-7936) CVE-2020-7936
Plone CMS Use of Externally-Controlled Format String Vulnerability (CVE-2017-5524) CVE-2017-5524
Plone CMS Weak Password Requirements Vulnerability (CVE-2020-7940) CVE-2020-7940
Plupload Cross-site Scripting (XSS) Vulnerability (CVE-2016-4566) CVE-2016-4566
PmWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-4453) CVE-2011-4453
PmWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2010-1481) CVE-2010-1481
PmWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2010-4662) CVE-2010-4662
PmWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2010-4748) CVE-2010-4748
PmWiki Other Vulnerability (CVE-2005-3849) CVE-2005-3849
PmWiki Other Vulnerability (CVE-2006-2840) CVE-2006-2840
PmWiki Other Vulnerability (CVE-2006-4453) CVE-2006-4453
Podcast Generator Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-20121) CVE-2018-20121
Polyfill.io Supply Chain Attack
Possible cross site scripting via Host header
Possible CSRF (Cross-site request forgery)
Possible database backup
Possible Database Name Disclosure
Possible sensitive directories
Possible sensitive files
Possible SQL Statement in comment
Possible username or password disclosure