VYPR

Concretecms

by Concrete5

Source repositories

CVEs (1)

  • CVE-2026-68530LowSep 15, 2026
    risk 0.07cvss epss

    Concrete CMS 9 through 9.5.2 did not perform an authorization check on several board-instance actions in the Boards area of the Dashboard. The instance details single-page controller resolved a board instance directly from an attacker-supplied instance ID and then viewed,…