Skip to main content
Loading…
    CVE-2026-8353 — Concrete CMS version 9.0 to 9.5.0 is vulnerable to Stored XSS via page name in the Atomik theme. A rogue editor can inject arbitrary JavaScript that executes in the context of any authenticated user v — CVE Database · The Intelligence Room