Concrete CMS below version 9.5.3 is vulnerable to Stored XSS via Express form Text control save_control (CVE-2026-81897) | HOL Guard CVE