Mmastodon TechnologyCybersecurity first seen 2 h ago, last 2 h ago, peak #11
Concrete CMS flaws mostly unpatched despite no critical CVEs
Original: Concrete CMS: no critical CVEs, but 93% of known flaws go unpatched. Trust score C. XSS dominates (26 of 30 CVEs). Patch
A new security assessment of Concrete CMS finds no critical CVEs, but 93% of its known vulnerabilities remain unpatched, earning the vendor a C trust score. Cross-site scripting dominates the issue list, accounting for 26 of 30 CVEs. The analysis argues that patch discipline matters more to users than severity scores alone, urging administrators to apply fixes promptly.
Why now: Security practitioners are discussing the gap between low severity ratings and poor patching behaviour in CMS software.
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/377993