Risky Bulletin Newsletter
February 04, 2026
Risky Bulletin: Plone CMS stops supply-chain attack
Presented by
News Editor
Plone, a Python-based content management system, has avoided a supply chain attack at the start of this year.
A threat actor inserted malicious code in five of the organization's repositories but the modifications were spotted before they made it to any official release.
The incident was traced back to a single developer's account.