CVE

Id
93958  
CVE No.
CVE-2016-7138  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the URL checking infrastructure in Plone CMS 5.x through 5.0.6, 4.x through 4.3.11, and 3.3.x through 3.3.6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  
Phase
Assigned (20160905)  
Votes
None (candidate not yet proposed)  
Comments