
CVE-2026-8414 Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concrete/controllers/dialog/event/duplicate. The Concrete CMS security team gave this … https://www.cve.org/CVERecord?id=CVE-2026-8414
Post summary
The text announces CVE-2026-8414, describing a CSRF vulnerability in Concrete CMS versions before 9.5.0, with a link to the CVE record.
