CVE-2026-75830 | Grav Plugin Api up to 1.0.14 PagesController batchCopy suffix path traversal

SecurityVulns

A vulnerability has been found in Grav Plugin Api up to 1.0.14 and classified as problematic. The impacted element is the function PagesController::batchCopy of the component PagesController. The manipulation of the argument suffix leads to path traversal.

This vulnerability is documented as CVE-2026-75830. The attack can be initiated remotely. There is not any exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More