CVE-2015-7293: Plone

High severity, CVSS 8.8. EPSS: 3% chance of exploitation in the next 30 days.

Multiple cross-site request forgery (CSRF) vulnerabilities in Zope Management Interface 4.3.7 and earlier, and Plone before 5.x.

Affected products

  • Plone Plone: version 3.3 only; version 3.3.1 only; version 3.3.2 only; version 3.3.3 only; version 3.3.4 only; version 3.3.5 only; …
  • Zope Zope Management Interface: up to and including 4.3.7

Published 2017-09-25. Last modified 2026-06-17.