Vulnerability CVE-2023-28819


Published: 2023-04-28

Description:
Concrete CMS (previously concrete5) before 9.1 is vulnerable to Stored XSS in uploaded file and folder names.

 References:
https://github.com/concretecms/concretecms/releases
https://www.concretecms.org/about/project-news/security/concrete-cms-security-advisory-2023-04-20

Copyright 2026, cxsecurity.com

 

Back to Top