CVE-2026-64851 | Getgrav Shortcode Core Plugin up to 6.2.1 Attribute ColorShortcode.php Security::detectXss cross site scripting

SecurityVulns

A vulnerability described as problematic has been identified in Getgrav Shortcode Core Plugin up to 6.2.1. This issue affects the function Security::detectXss of the file ColorShortcode.php of the component Attribute Handler. Such manipulation leads to cross site scripting.

This vulnerability is listed as CVE-2026-64851. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More