Description
Plone through 5.2.4 allows remote authenticated managers to perform disk I/O via crafted keyword arguments to the ReStructuredText transform in a Python script.
Remediation
References
Related Vulnerabilities
WordPress Plugin LeadConnector Security Bypass (1.7)
Dot CMS Other Vulnerability (CVE-2022-26352)
MySQL CVE-2018-3282 Vulnerability (CVE-2018-3282)
Drupal Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2020-36193)
WordPress Plugin Postman SMTP Mailer/Email Log Cross-Site Scripting (2.0.0)