Concrete CMS (previously concrete5) versions 8.5.12 and below, and 9.0 through 9.1.3 is vulnerable to possible Auth bypass in the jobs section.
https://www.concretecms.org/about/project-news/security/concrete-cms-security-advisory-2023-04-20
https://www.concretecms.org/about/project-news/security/2023-11-09-security-blog-about-updated-cves-and-new-release
https://concretecms.com
Source: Mitre, NVD
Published: 2023-04-28
Updated: 2026-06-17
Base Score: 3.2
Vector: CVSS2#AV:N/AC:H/Au:M/C:N/I:P/A:P
Severity: Low
Base Score: 3.3
Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:L
EPSS: 0.00258