Vulnerabilities (CVE)

Filtered by vendor Plone Subscribe
Filtered by product Plone Docker Official Image
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-23054 1 Plone 1 Plone Docker Official Image 2024-02-13 N/A 9.8 CRITICAL
An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to a package listed in ++plone++static/components not existing in the public package index (npm).
CVE-2024-23055 1 Plone 1 Plone Docker Official Image 2024-02-02 N/A 6.1 MEDIUM
An issue in Plone Docker Official Image 5.2.13 (5221) open-source software allows for remote code execution via improper validation of input by the HOST headers.