Grav Grav是Grav组织开源的一个基于文件系统的无数据库内容管理系统。 Grav 1.0.10之前版本存在权限许可和访问控制问题漏洞,该漏洞源于未验证InvitationsController::create()中的groups字段,允许经过身份验证的api.users.write调用者将受邀账户分配到授予api.super权限的组,攻击者可创建具有提升组成员资格的邀请记录,当接受邀请时,新账户在邀请者未持有这些权限的情况下获得完全super-admin API访问权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-65608 | 8.8 HIGH | Grav before 2.0.9 Remote Code Execution via FlexDirectory |
| CVE-2026-65895 | 8.5 HIGH | Grav API Plugin before 1.0.10 Broken Access Control |
| CVE-2026-65896 | 7.1 HIGH | Grav API Plugin before 1.0.10 Path Traversal via move |
No comments yet