Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-1275 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 15 | 15 | 0 |
█▁▂▂
2026-05 13 · 2026-06 0 · 2026-07 1 · 2026-08 1
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-55688 | 4.0 | 12.7 | — | AsyncHttpClient: Cookie stored for an unrelated domain (cookie tossing) via ThreadSafeC… |
| CVE-2026-73847 | 6.8 | 6.4 | — | Emlog: Missing CSRF protection in AI Assistant execute_tool leads to full database comp… |
| CVE-2026-8409 | 2.3 | 4.0 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8410 | 2.3 | 4.0 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8411 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8412 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8413 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8414 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8415 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8416 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8427 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8432 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8433 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8434 | 2.3 | 3.1 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| CVE-2026-8435 | 2.3 | 1.8 | — | Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concr… |
| Vendor | CVEs |
|---|---|
| concrete cms | 13 |
| asynchttpclient | 1 |
| emlog | 1 |