concrete5/concrete5
Concrete – an open source content management system.
Security Advisories for concrete5/concrete5 in packagist
Moderate
4 months ago
Concrete CMS vulnerable to Reflected Cross-Site Scripting (XSS) in Conversation Messages Dashboard Page
packagist
concrete5/concrete5
Low
4 months ago
Concrete CMS is vulnerable to Stored XSS from Home Folder on Members Dashboard page
packagist
concrete5/concrete5
Moderate
8 months ago
Concrete CMS Vulnerable to Cross-Site Request Forgery (CSRF) and Cross-Site Scripting (XSS)
packagist
concrete5/concrete5
Moderate
8 months ago
ConcreteCMS Cross-Site Scripting (XSS) via HTML Block Text Field
packagist
concrete5/concrete5
Moderate
9 months ago
Concrete CMS affected by a stored XSS in Folder Function.The "Add Folder" functionality
packagist
concrete5/concrete5
Moderate
about 1 year ago
Concrete CMS stored XSS vulnerability in the "Top Navigator Bar" block
packagist
concrete5/concrete5
Moderate
about 1 year ago
Concrete CMS Stored XSS in the "Next&Previous Nav" block
packagist
concrete5/concrete5
Low
over 1 year ago
Concrete CMS vulnerable to Stored Cross-site Scripting
packagist
concrete5/concrete5
Moderate
over 1 year ago
Concrete CMS Stored Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
over 1 year ago
Concrete CMS Stored XSS in getAttributeSetName
packagist
concrete5/concrete5
Moderate
over 1 year ago
Concrete CMS vulnerable to Stored Cross-site Scripting
packagist
concrete5/concrete5
Low
over 1 year ago
Concrete CMS Cross-site Scripting (XSS) in the Advanced File Search Filter
packagist
concrete5/concrete5
Low
over 1 year ago
Concrete CMS Stored XSS on the calendar color settings screen
packagist
concrete5/concrete5
Low
over 1 year ago
Concrete CMS Stored XSS in the Custom Class page editing
packagist
concrete5/concrete5
Low
almost 2 years ago
Concrete CMS Stored Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
almost 2 years ago
Concrete CMS Cross Site Request Forgery (CSRF) vulnerability
packagist
concrete5/concrete5
Moderate
almost 2 years ago
Concrete CMS Stored XSS in Layout Preset Name
packagist
concrete5/concrete5
Moderate
almost 2 years ago
Concrete CMS Cross Site Request Forgery (CSRF) vulnerability
packagist
concrete5/concrete5
Low
almost 2 years ago
Concrete CMS vulnerable to stored XSS in file tags and description attributes
packagist
concrete5/concrete5
Low
almost 2 years ago
Concrete CMS vulnerable to stored XSS via the Role Name field
packagist
concrete5/concrete5
Low
almost 2 years ago
Concrete CMS vulnerable to reflected XSS via the Image URL Import Feature
packagist
concrete5/concrete5
Moderate
almost 2 years ago
Concrete CMS Cross Site Request Forgery (CSRF)
packagist
concrete5/concrete5
Moderate
about 2 years ago
Concrete CMS allows unauthorized access because directories can be created with insecure permissions
packagist
concrete5/concrete5
Moderate
about 2 years ago
Concrete CMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS vulnerable to Stored Cross-site Scripting
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
about 2 years ago
ConcreteCMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
over 2 years ago
Concrete CMS Cross-site Scripting vulnerability
packagist
concrete5/concrete5
Moderate
over 2 years ago
Stored cross site scripting on API integration
packagist
concrete5/concrete5
Low
over 2 years ago
Concrete CMS (previously concrete5) is vulnerable to stored XSS in uploaded file and folder names
packagist
concrete5/concrete5
Critical
over 2 years ago
Concrete CMS (previously concrete5) is vulnerable to possible auth bypass in the jobs section
packagist
concrete5/concrete5
Moderate
over 2 years ago
Concrete CMS missing secure cookie parameters
packagist
concrete5/concrete5
Moderate
over 2 years ago
Stored cross site scripting via container name
packagist
concrete5/concrete5
Moderate
over 2 years ago
Stored cross site scripting on saved presets
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to cross-site scripting in the text input field
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Reflected Cross-site Scripting via image manipulation library
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Reflected Cross-site Scripting
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Uncontrolled Resource Consumption leading to DoS
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Session Fixation
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Cross-site Scripting
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Cleartext Transmission of Sensitive Information
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Reflected Cross-Site Scripting via dashboard icons
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Cross-site Scripting via multilingual report
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to XML External Entity
packagist
concrete5/concrete5
Moderate
about 3 years ago
Concrete CMS vulnerable to Improper Authentication
packagist
concrete5/concrete5
High
about 3 years ago
Concrete CMS vulnerable to Cross-site Request Forgery
packagist
concrete5/concrete5
Moderate
over 3 years ago
Concrete CMS Cross-site Scripting via Survey Blocks
packagist
concrete5/concrete5
Moderate
over 3 years ago
Concrete5 Vulnerable to Cross-Site Scripting (XSS)
packagist
concrete5/concrete5
Moderate
over 3 years ago
Concrete CMS vulnerable to cross-site scripting (XSS)
packagist
concrete5/concrete5
High
almost 4 years ago
Cross Site Request Forgery in concrete5/concrete5
packagist
concrete5/concrete5
High
about 4 years ago
Server-Side Request Forgery vulnerability in concrete5
packagist
concrete5/concrete5