Skip to main content

Vendor/product archive

getgrav / grav-plugin-admin CVEs

Beta · best-effort

9 CVEs tagged to getgrav / grav-plugin-admin1 Critical, 0 High, 8 Medium, 0 Low, 0 Unrated.

CVE-2025-66312

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Si…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-66311

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Si…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-66310

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Si…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-66309

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Reflected Cross…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-66308

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a Stored Cross-Si…

CVSS 6.8 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-66307

Published Dec 1, 2025

This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a user enumeratio…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2021-3920

Published Nov 19, 2021

grav-plugin-admin is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21425

Published Apr 7, 2021

Grav Admin Plugin is an HTML user interface that provides a way to configure Grav and create and modify pages. In versions 1.10.7 and earlier, an unauthenticated user can execute…

CVSS 9.3 · Critical
Buzz score
5.5
Public PoC observed
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1