CVE-2026-11982

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
N/A
Affected
2
PROJECTS

Description

Grav 2.0.0-rc.9 with Admin2 2.0.0-rc.14 contains a stored cross-site scripting (XSS) vulnerability in the Admin2 Pages API save flow.

Modern, Crazy Fast, Ridiculously Easy and Amazingly Powerful Flat-File CMS powered by PHP, Markdown, Twig, and Symfony
GitHubGitHub
15.5K
RESTful API plugin for Grav CMS
GitHubGitHub
3