VYPR

Plone Docker Official Image

by Plone (software)

CVEs (2)

  • CVE-2024-23054CriFeb 5, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to a package listed in ++plone++static/components not existing in the public package index (npm).

  • CVE-2024-23055MedJan 25, 2024
    risk 0.40cvss 6.1epss 0.01

    An issue in Plone Docker Official Image 5.2.13 (5221) open-source software allows for remote code execution via improper validation of input by the HOST headers.