Loading...
Loading...
typeswidget.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 does not properly enforce the immutable setting on unspecified content edit forms, which allows remote attackers to hide fields on the forms via a crafted URL.
March 11, 2014
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-4193
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.