Security Advisory

CVE-2023-28477

5.5
MEDIUM

Vulnerability Description

Concrete CMS (previously concrete5) versions 8.5.12 and below, and 9.0 through 9.1.3 is vulnerable to stored XSS on API Integrations via the name parameter.
Published Date April 28, 2023
Official Source NIST NVD Advisory