Skip to main content
Loading…
    CVE-2025-3153 — Concrete CMS version 9 below 9.4.0RC2 and versions below 8.5.20 are vulnerable to CSRF and XSS in the Concrete CMS Address attribute because addresses are not properly sanitized in the output when a c — CVE Database · The Intelligence Room