Skip to main content
Loading…
    CVE-2026-8421 — Concrete CMS 9.5.0 and below contains a CSRF vulnerability in the install_package() method of concrete/controllers/single_page/dashboard/extend/install.php.  An attacker who can cause an authenticated — CVE Database · The Intelligence Room