Hotfixes
Plone versions - security support
See the Plone release schedule for the support policies.
At the bottom of this page we used to have a table of hotfixes per Plone version. In July 2024 we moved this to a separate page for historical purposes. Reason is that the security support has changed in January 2024. Quoting from the updated release policy: "Only the latest patch release within a minor version gets security support. Security fixes may work on an older patch release, but we cannot guarantee this." So a table showing you which hotfixes you need for each patch version of Plone is no longer needed. You should use the latest patch version within a supported Plone minor version.
Minor versions with security support
The following Plone minor versions have security support
Plone 6.0
- Security support until 2027-12-31.
- Latest release: 6.0.15
- Updated Plone Python backend packages needed for security:
- Products.isurlinportal 2.1.0. See Plone security advisory 20260302.
plone.app.textfield2.0.2 andplone.restapi9.15.6. See Plone security advisory 20260605.- plone.app.contenttypes 3.0.12, plone.app.dexterity 3.2.3, plone.app.event 5.2.4, plone.app.portlets 5.0.8. See Plone security advisory 20260623. Plus for the same advisory: RestrictedPython 8.3 if you are on Python 3.11 or higher (it is incompatible with Python 3.10).
Plone 6.1
- Security support until 2027-12-31.
- Latest release: 6.1.5
- Updated Plone Python backend packages needed for security: none
Plone 6.2
- Security support until 2027-12-31.
- Latest release: 6.2.0
- Updated Plone Python backend packages needed for security:
plone.app.textfield4.0.1 andplone.restapi10.0.1. See Plone security advisory 20260605.- icalendar 7.1.3, plone.app.contenttypes 5.0.1, plone.app.dexterity 5.0.1, plone.app.event 6.0.1, plone.app.portlets 7.0.2, RestrictedPython 8.3. See Plone security advisory 20260623.