Security Advisory
CVE-2023-49337
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Concrete CMS before 9.2.3 allows Stored XSS on the Admin Dashboard via /dashboard/system/basics/name. (8.5 and earlier are unaffected.)