Description
Plone 4.x through 4.3.11 and 5.x through 5.0.6 allow remote attackers to bypass a sandbox protection mechanism and obtain sensitive information by leveraging the Python string format method.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Button Plugin MaxButtons Cross-Site Scripting (6.18)
WordPress Plugin True Ranker Directory Traversal (2.2.2)
WordPress Cross-Site Scripting Vulnerability (0.70 - 3.7.11)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.19)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-10159)