CVE-2026-72824 | GetGrav up to 1.0.12 API Plugin guardTwigContent special elements used in a template engine

SecurityVulns

A vulnerability described as problematic has been identified in GetGrav Grav up to 1.0.12. This affects the function PagesController::guardTwigContent of the component API Plugin. Such manipulation leads to improper neutralization of special elements used in a template engine.

This vulnerability is documented as CVE-2026-72824. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More