Vulnerabilities > Plone > Plone > 4.3.0

DATE CVE VULNERABILITY TITLE RISK
2018-01-03 CVE-2017-1000482 Cross-site Scripting vulnerability in Plone
A member of the Plone 2.5-5.1rc1 site could set javascript in the home_page property of his profile, and have this executed when a visitor click the home page link on the author page.
network
plone CWE-79
3.5