CVE-2021-22954
EPSS 0.15%Cross Site Request Forgery in concrete5/concrete5
Published: 2/11/2022Modified: 12/5/2024
Also known as:GHSA-gr23-g276-xc73
Description
A cross-site request forgery vulnerability exists in Concrete CMS <v9 that could allow an attacker to make requests on behalf of other users.
Affected packages (1)
- Packagist/concrete5/concrete5from 0, < 9.0.0