CVE-2021-22954

EPSS 0.15%

Cross Site Request Forgery in concrete5/concrete5

Published: 2/11/2022Modified: 12/5/2024
Also known as:GHSA-gr23-g276-xc73

Description

A cross-site request forgery vulnerability exists in Concrete CMS <v9 that could allow an attacker to make requests on behalf of other users.

Affected packages (1)

References (2)