Vulnerabilities > Getgrav > Grav
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-09 | CVE-2023-31506 | Cross-site Scripting vulnerability in Getgrav Grav A cross-site scripting (XSS) vulnerability in Grav versions 1.7.44 and before, allows remote authenticated attackers to execute arbitrary web scripts or HTML via the onmouseover attribute of an ISINDEX element. | 5.4 |
2023-07-18 | CVE-2023-37897 | Return of Wrong Status Code vulnerability in Getgrav Grav 1.7.42/1.7.42.1 Grav is a file-based Web-platform built in PHP. | 8.8 |
2023-06-14 | CVE-2023-34253 | Code Injection vulnerability in Getgrav Grav Grav is a flat-file content management system. | 7.2 |
2023-06-14 | CVE-2023-34448 | Code Injection vulnerability in Getgrav Grav Grav is a flat-file content management system. | 7.2 |
2023-06-14 | CVE-2023-34452 | Cross-site Scripting vulnerability in Getgrav Grav Grav is a flat-file content management system. | 6.1 |
2023-06-14 | CVE-2023-34251 | Code Injection vulnerability in Getgrav Grav Grav is a flat-file content management system. | 7.2 |
2023-06-14 | CVE-2023-34252 | Code Injection vulnerability in Getgrav Grav Grav is a flat-file content management system. | 7.2 |
2022-06-29 | CVE-2022-2073 | Code Injection vulnerability in Getgrav Grav Code Injection in GitHub repository getgrav/grav prior to 1.7.34. | 6.5 |
2022-04-26 | CVE-2022-1173 | Cross-site Scripting vulnerability in Getgrav Grav stored xss in GitHub repository getgrav/grav prior to 1.7.33. | 3.5 |
2022-03-15 | CVE-2022-0970 | Cross-site Scripting vulnerability in Getgrav Grav Cross-site Scripting (XSS) - Stored in GitHub repository getgrav/grav prior to 1.7.31. | 3.5 |