-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability description explicitly references formatColumns in python_scripts.py as the root cause. Multiple authoritative sources (CVE/NVD, GHSA, Red Hat advisories, and Plone's own security advisory) consistently link the DoS vector to this function. The CWE-770 classification confirms this is a resource allocation flaw. While no patch diff is available, the correlation across all documentation and the specific function/file references provide high confidence.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| Plone | pip | >= 4.0, < 4.2.3 | 4.2.3 |
| Plone | pip | >= 4.3a1, < 4.3b1 | 4.3b1 |