CVE-2026-81915 | Concrete CMS up to 9.5.2 Dashboard Controller Types::submit ptID improper authorization

SecurityVulns

A vulnerability, which was classified as problematic, was found in Concrete CMS up to 9.5.2. The impacted element is the function Types::submit of the component Dashboard Controller. Such manipulation of the argument ptID leads to improper authorization.

This vulnerability is referenced as CVE-2026-81915. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.VulDB Recent EntriesRead More