Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Concrete CMS | Concrete CMS | 5 ~ 9.4.8 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-3244 | Concrete CMS below version 9.4.8 is vulnerable to Stored XSS in Search Results via Page Na | |
| CVE-2026-3241 | Concrete CMS below version 9.4.8 is vulnerable to a stored cross-site scripting (XSS) in t | |
| CVE-2026-3242 | Concrete CMS below 9.4.8 is vulnerable to Stored XSS in the Switch Language block | |
| CVE-2026-3240 | Concrete CMS below 9.4.8 is vulnerable to Stored XSS via Legacy form | |
| CVE-2026-2994 | Concrete CMS below 9.4.8 is vulnerable to CSRF by a Rogue Admin using the Anti-Spam Allowl |
No comments yet