CVE-2025-66312
- EPSS 0.04%
- Veröffentlicht 01.12.2025 22:06:27
- Zuletzt bearbeitet 03.12.2025 21:56:09
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the /admin/accounts/...
CVE-2025-66311
- EPSS 0.04%
- Veröffentlicht 01.12.2025 22:05:17
- Zuletzt bearbeitet 03.12.2025 21:56:18
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the /admin/pages/[pa...
CVE-2025-66310
- EPSS 0.04%
- Veröffentlicht 01.12.2025 22:04:09
- Zuletzt bearbeitet 03.12.2025 21:56:30
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the /admin/pages/[pa...
CVE-2025-66309
- EPSS 0.05%
- Veröffentlicht 01.12.2025 22:02:50
- Zuletzt bearbeitet 03.12.2025 21:56:35
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Reflected Cross-Site Scripting (XSS) vulnerability was identified in the /admin/pages/...
CVE-2025-66308
- EPSS 0.04%
- Veröffentlicht 01.12.2025 22:00:42
- Zuletzt bearbeitet 03.12.2025 21:56:43
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the /admin/config/si...
CVE-2025-66307
- EPSS 0.06%
- Veröffentlicht 01.12.2025 21:53:43
- Zuletzt bearbeitet 03.12.2025 21:58:18
This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a user enumeration and email disclosure vulnerability exists in Grav. The "Forgot Passwo...
CVE-2021-3920
- EPSS 0.28%
- Veröffentlicht 19.11.2021 13:15:09
- Zuletzt bearbeitet 21.11.2024 06:22:46
grav-plugin-admin is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3799
- EPSS 0.16%
- Veröffentlicht 27.09.2021 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:22:28
grav-plugin-admin is vulnerable to Improper Restriction of Rendered UI Layers or Frames
CVE-2021-21425
- EPSS 91.64%
- Veröffentlicht 07.04.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:48:20
Grav Admin Plugin is an HTML user interface that provides a way to configure Grav and create and modify pages. In versions 1.10.7 and earlier, an unauthenticated user can execute some methods of administrator controller without needing any credential...