Red Hat Bugzilla – Bug 1373466
CVE-2016-7140 plone: Non-Persistent XSS in Zope2
Last modified: 2017-01-09 04:30:57 EST
In multiple places it was discovered that Zope2's ZMI pages do not properly escape user input. CVE assignment: http://seclists.org/oss-sec/2016/q3/417 External References: https://plone.org/security/hotfix/20160830/non-persistent-xss-in-zope2
Created plone tracking bugs for this issue: Affects: epel-5 [bug 1373467]