CVE-2015-7318: Plone
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
Plone 3.3.0 through 3.3.6 allows remote attackers to inject headers into HTTP responses.
Affected products
- Plone Plone: version 3.3 only; version 3.3.1 only; version 3.3.2 only; version 3.3.3 only; version 3.3.4 only; version 3.3.5 only; …
Published 2017-09-25. Last modified 2026-06-17.