Red Hat Bugzilla – Bug 1373464
CVE-2016-7139 plone: Non-Persistent XSS in page template
Last modified: 2016-09-06 07:14:50 EDT
It was discovered that Plone has unescaped user input in a page template that is open to XSS. CVE assignment: http://seclists.org/oss-sec/2016/q3/417 External References: https://plone.org/security/hotfix/20160830/non-persistent-xss-in-plone
Created plone tracking bugs for this issue: Affects: epel-5 [bug 1373467]