First published: Mon Mar 31 2025(Updated: )
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Credit: ff5b8ace-8b95-4078-9743-eac1ca5451de
Affected Software | Affected Version | How to fix |
---|---|---|
ConcreteCMS | <=9.3.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2969 has been rated as problematic.
CVE-2025-2969 affects the Save function of the Feature Link Block Handler in ConcreteCMS versions up to 9.3.9.
CVE-2025-2969 may lead to cross-site scripting attacks due to manipulations of specific arguments.
To mitigate CVE-2025-2969, update ConcreteCMS to version 9.4.0 or later.
If immediate updating is not feasible, consider implementing input validation and sanitization to prevent cross-site scripting.