CVE-2026-68534 | Concrete CMS up to 9.5.2 Express cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in Concrete CMS up to 9.5.2. This affects an unknown function of the component Express. The manipulation leads to cross site scripting.

This vulnerability is referenced as CVE-2026-68534. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More