All 154 CVE vulnerabilities found in grav, with AI-generated Chinese analysis, references, and POCs.
This page aggregates known security vulnerabilities affecting the Graviton server platform, specifically focusing on memory corruption and access control weaknesses identified through hardware abstraction layers. The collection spans advisories issued over the last five years, covering critical defects in driver interfaces and virtualization components that impact system stability and confidentiality. Readers can use this resource to track vendor-issued security notices, analyze the evolution of specific weakness classes, and review the complete vulnerability history for the Graviton product line. By examining these entries, technical teams can identify recurring patterns in firmware updates, assess potential impact on cloud workloads, and verify which patches have been applied to deployed instances. The data is organized by release version and severity rating, allowing engineers to quickly isolate relevant fixes for their infrastructure environment without needing to search multiple disparate sources. This centralized view supports proactive risk management by highlighting which specific Graviton revisions require immediate attention due to unpatched critical flaws affecting network stack integrity or privilege escalation paths within the hypervisor context.
Vendor: getgrav
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-34253 | Grav vulnerable to Server-side Template Injection (SSTI) via Denylist Bypass CWE-184 | 8.8 | High | 2023-06-14 |
| CVE-2023-34252 | Grav Server-side Template Injection via Insufficient Validation in filterFilter CWE-184 | 8.8 | High | 2023-06-14 |
| CVE-2023-34251 | Grav Server Side Template Injection vulnerability CWE-94 | 10.0 | Critical | 2023-06-14 |
| CVE-2021-29440 | Twig allowing dangerous PHP functions by default CWE-94 | 8.4 | High | 2021-04-13 |
All 154 known CVE vulnerabilities affecting grav with full Chinese analysis, references, and POCs where available.