| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2020-36955 | Grav CMS 1.6.30 Admin Plugin 1.9.18 - 'Page Title' Persistent Cross-Site Scripting | Getgrav | Grav CMS Admin Plugin | Medium | 6.4 | 2026-01-26 17:42:45 | Deep Dive |
| CVE-2021-3920 | Cross-site Scripting (XSS) - Stored in getgrav/grav-plugin-admin | getgrav | getgrav/grav-plugin-admin | 中危 | - | 2021-11-19 12:15:11 | Deep Dive |
| CVE-2021-3799 | Improper Restriction of Rendered UI Layers or Frames in getgrav/grav-plugin-admin | getgrav | getgrav/grav-plugin-admin | 中危 | - | 2021-09-27 12:25:22 | Deep Dive |
| CVE-2021-29439 | Plugins can be installed with minimal admin privileges | getgrav | grav-plugin-admin | High | 7.2 | 2021-04-13 19:45:15 | Deep Dive |
| CVE-2021-21425 | Unauthenticated Arbitrary YAML Write/Update leads to Code Execution | getgrav | grav-plugin-admin | Critical | 9.3 | 2021-04-07 18:20:13 | Deep Dive |