Archive for the 'security' Category

If you have been paying attention to Plone checkins, you might have noticed some checkins mentioning CSRF (Cross-Site Request Forgery) flying by. Today Secunia released an advisory about the issue. As can be seen from the referenced paper, web technologies make some things just way too simple to hack around. On a unrelated note, call [...]


We have created an update installer to fix a security issue affecting all released versions of Enfold Server. The issue is in the Zope application server, one of the key components underlying Enfold Server. We recommend you download this update and run it on your server as soon as possible. The update adds a product [...]