20151006 hotfix released

"Announcement of Plone releases and security-related notifications. Recommended subscription for all Plone developers and site admins." <[email protected]> Tue, 6 Oct 2015 18:06:39 +0200
Newsgroups gmane.comp.web.zope.plone.announce
Message-ID <CAEAvvhwvMscYvEy2_+tbEt-ceDSnTqTeZn0coKnXLuE=kjrteQ@mail.gmail.com>
--===============8020190982251957296==
Content-Type: multipart/alternative; boundary=001a11c26650a9f08e052171d03a

--001a11c26650a9f08e052171d03a
Content-Type: text/plain; charset=UTF-8

A hotfix for all versions of Plone 4.x. Fixes multiple CSRF vulnerabilities
in Zope: https://plone.org/products/plone-hotfix/releases/201510061
<https://plone.org/products/plone-hotfix/releases/20151006>

for more information on the nature of the issue, see
https://plone.org/products/plone/security/advisories/security-vulnerability-20151006-csrf


This is the follow up to Announcement:
https://community.plone.org/t/security-vulnerability-pre-announcement-20151006/979/2

The Plone Security Best Practices docs have been updated:
http://docs.plone.org/manage/deploying/production/securitybestpractices.html

--001a11c26650a9f08e052171d03a
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><div class=3D"">
          <p>A hotfix for all versions of Plone 4.x. Fixes multiple CSRF vu=
lnerabilities in Zope: <a href=3D"https://plone.org/products/plone-hotfix/r=
eleases/20151006">https://plone.org/products/plone-hotfix/releases/20151006=
<span class=3D"" title=3D"1 click">1</span></a></p><p>for more information =
on the nature of the issue, see=C2=A0<a href=3D"https://plone.org/products/=
plone/security/advisories/security-vulnerability-20151006-csrf">https://plo=
ne.org/products/plone/security/advisories/security-vulnerability-20151006-c=
srf</a></p><p><br></p>

<p>This is the follow up to Announcement: <a href=3D"https://community.plon=
e.org/t/security-vulnerability-pre-announcement-20151006/979/2">https://com=
munity.plone.org/t/security-vulnerability-pre-announcement-20151006/979/2</=
a></p>

<p>The Plone Security Best Practices docs have been updated: <a href=3D"htt=
p://docs.plone.org/manage/deploying/production/securitybestpractices.html">=
http://docs.plone.org/manage/deploying/production/securitybestpractices.htm=
l</a></p><p><br></p><p><br></p></div></div>

--001a11c26650a9f08e052171d03a--


--===============8020190982251957296==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

------------------------------------------------------------------------------

--===============8020190982251957296==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Plone-Announce mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/plone-announce

--===============8020190982251957296==--