Skip to main content
Loading…
    CVE-2025-8571 — Concrete CMS 9 to 9.4.2 and versions below 8.5.21 are vulnerable to Reflected Cross-Site Scripting (XSS) in the Conversation Messages Dashboard Page. Unsanitized input could cause theft of session coo — CVE Database · The Intelligence Room