Open Source Vulnerabilities
ID
Packages
Summary
Published
Attributes
CVE-2026-81910
No fix available
Packages
Summary
Concrete CMS 9 through 9.5.2 is vulnerable to Server-Side Template Injection (SSTI) in Theme Customizer via Unvalidated Style Values
Published
11 Sept 2026Concrete CMS 9 through 9.5.2 is vulnerable to Server-Side Template Injection (SSTI) in Theme Customizer via Unvalidated Style Values
11 Sept 2026
No fix available
