MEDIUM 4.4 PyPI

Plone Authenticated Denial of Service vulnerability

GHSA-w3pw-qxjj-6prr · CVE-2013-4188 · PYSEC-2014-52

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

traverser.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allows remote attackers with administrator privileges to cause a denial of service (infinite loop and resource consumption) via unspecified vectors related to "retrieving information for certain resources."

Ready to move

Start Securing

Free, no credit card | First findings in minutes