Vulnerabilities > Getgrav > Grav > 1.7.40
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-09 | CVE-2023-31506 | Cross-site Scripting vulnerability in Getgrav Grav A cross-site scripting (XSS) vulnerability in Grav versions 1.7.44 and before, allows remote authenticated attackers to execute arbitrary web scripts or HTML via the onmouseover attribute of an ISINDEX element. | 5.4 |