UNKNOWN PyPI

Zope does not properly verify the access for objects with proxy roles

GHSA-c3rp-4cjh-cp38 · CVE-2002-0170 · PYSEC-2026-758

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.

Ready to move

Start Securing

Free, no credit card | First findings in minutes