Skip to main contentSkip to navigationSkip to footer
Plone.org logo

Why Plone

  • What is Plone?
  • Features
  • Plone 6
  • They use Plone
  • Extend Plone
  • Roadmap
  • Plone as a Headless CMS
  • Frequently asked questions

Why Plone

Get Started with Plone

  • Try Plone
  • Install Plone
  • Documentation
  • Training

Get Started

Services

  • Providers
  • Training

Services

Community

  • Bugs
  • Conferences
  • Contribute
  • Forum
  • Google Summer of Code
  • Online Chat
  • Support
  • Teams

Community

Plone Foundation

  • About
  • Membership
  • Sponsor Plone
  • Board of Directors
  • Financial statements
  • Board and Member Meetings
  • Plone Event and Sprint Sponsorship Policy
  • Copyright, Licensing: Plone Code & Logo
  • Contact us

Foundation

News and Events

  • News
  • Events
  • Podcasts
  • Plone Podcast
  • The Plone Newsroom
  • Plone Labs
  • Plone Hands-On
  • Plone in Social Media
  • Plone YouTube channel
  • Plone Tune-Up Days
  • Sprints

Highlights

  • Plone Conference 2026
  • World Plone Day 2026
  • Join the Plone Newsletter
News and Events
Try now
Home

Search results

21 results
Sort by:

Plone 3.3.4 released

Plone 3.3 has a new maintenance release available, and you should upgrade to fix a potential security issue with Zope, and to make your site load faster.
Read More…

Hotfix for Zope Security Issue Affecting Versions of Plone 4 Has Been Released

A code fix for a vulnerability in Zope 2.12.x and Zope 2.13.x that allows execution of arbitrary code by anonymous users affecting versions of Plone 4 is now available.
Read More…

Plone Security Vulnerabilities and Fix Announced

On June 2nd, the Plone Security Team announced three security vulnerabilities in the Plone CMS, and released a Hotfix to eliminate the risk of them being exploited.
Read More…

PloneFormGen vulnerability requires immediate upgrade

PloneFormGen, a widely used response-form-creation add-on for the Plone Content Management System, has been discovered to have a serious vulnerability that allows an anonymous attacker to execute arbitrary code with the privileges of the system user running the server.
Read More…

Plone 20131210 Hotfix Released

The Plone Security team has released the first of its 4-monthly hotfixes.
Read More…

Hotfix Posted for security vulnerability 20130618

Users of Plone 4.3, Plone 4.2, Plone 4.1, Plone 4, Plone 3, Plone 2.5 and Plone 2.1 should immediately apply this hotfix.
Read More…

Plone Website Accounts Safe from Heartbleed

The plone.org website is safe from the Heartbleed bug and, as such, plone.org passwords have not been disclosed.
Read More…

URGENT / ACTION REQUIRED Plone security vulnerability, hotfix 20150910

HotFix for Plone sites (all versions) with self-registration enabled
Read More…

Security patch released: 20160419

Hotfix to patch various vulnerabilities
Read More…

Minor Plone Security Fixes

The Plone Security Team has released new versions of several packages. These new versions remedy several security-related issues, none of which were significant enough to warrant a full security hotfix.
Read More…

Plone's Outstanding Security Track Record

No credible report of a serious vulnerability in Plone being exploited in the wild. – published Jan 04, 2017 10:05 PM UTC, last modified Jan 05, 2017 03:26 PM UTC
Read More…

Security patch 20210518 version 1.4 released

Version 1.4 of the hotfix to patch various vulnerabilities. This hotfix is recommended for Plone 4.3, 5.0, 5.1 and 5.2.
Read More…

Security patch 20210518 version 1.5 released

Version 1.5 of the hotfix to patch various vulnerabilities. This hotfix is recommended for Plone 4.3, 5.0, 5.1 and 5.2.
Read More…

Security vulnerability pre-announcement: 20210518

Hotfix to patch various vulnerabilities. This hotfix is recommended for Plone 4.3, 5.0, 5.1 and 5.2.
Read More…

Security patch released 20210518

Hotfix to patch various vulnerabilities. This hotfix is recommended for Plone 4.3, 5.0, 5.1 and 5.2.
Read More…

Plone 6

Plone 6 - secure, solid and easy to use. Content management for the users.
Read More…

Security: Potential mail header vulnerability

Plone 2.0 has a bug that makes it potentially possible to insert extra headers in mail via the Send To form.
Read More…

Zope Hotfix Installers Released

Thanks to the folks at Enfold Systems and Kamal Gill, users of the Plone installers now have a simple method of applying the recent Zope hotfix.
Read More…

Urgent Zope Security Hotfix (CVE-2006-3458)

A patch has been created for an Zope vulnerability which affects Plone. Please download and install it.
Read More…

Security: Zope 2.8 hotfix released

If you are still running Zope 2.8.x on your servers, a new potential information disclosure exploit was recently discovered and fixed.
Read More…

Plone Security Advisory: Password Reset Tool

A potential security vulnerability was discovered as part of the recent security audit done in preparation for the 2.5.1 release. Any site running Plone 2.5 should upgrade to the latest version of Password Reset Tool. Plone 2.1.x and 2.0.x are not affected.
Read More…
About Plone
Try Plone
Download Plone
Plone Releases
Documentation
Training
Security
Roadmap
GitHub
Community
Forum
Chat
Contribute code
Report an issue
News and events
Conference
Join the Plone newsletter
Foundation
Join the foundation
Board
Donate
Sponsors
Apply for Event and Sprint Funds
Code of conduct
Foundation members
Shop
Follow us
Mastodon
Twitter
Instagram
YouTube
Linkedin
Facebook
Privacy Policy
Cookie settings
Plone.org logo
The text and illustrations in this website are licensed by the Plone Foundation under a Creative Commons Attribution-ShareAlike 4.0 International license. Plone and the Plone® logo are registered trademarks of the Plone Foundation, registered in the United States and other countries. For guidelines on the permitted uses of the Plone trademarks, see https://plone.org/foundation/logo. All other trademarks are owned by their respective owners.