{ "id": "CVE-2023-44761", "sourceIdentifier": "cve@mitre.org", "published": "2023-10-06T13:15:12.747", "lastModified": "2023-10-06T13:17:35.473", "vulnStatus": "Undergoing Analysis", "descriptions": [ { "lang": "en", "value": "Multiple Cross Site Scripting (XSS) vulnerabilities in Concrete CMS v.9.2.1 allow a local attacker to execute arbitrary code via a crafted script to the Forms of the Data objects." } ], "metrics": {}, "references": [ { "url": "https://github.com/sromanhu/ConcreteCMS-Stored-XSS---Forms", "source": "cve@mitre.org" } ] }