Description
The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization.
Remediation
References
Related Vulnerabilities
WordPress Plugin External 'Video for Everybody' Cross-Site Scripting (2.0)
WordPress Plugin Smush Image Compression and Optimization Multiple Vulnerabilities (2.9.1)
WordPress 5.7.x Multiple Prototype Pollution Vulnerabilities (5.7 - 5.7.5)
Rukovoditel Cross-site Scripting (XSS) Vulnerability (CVE-2019-7541)