CVE-2026-86196 | getgrav API Plugin up to 1.0.19 Forgot-Password Endpoint redirect

SecurityVulns

A vulnerability, which was classified as problematic, was found in getgrav API Plugin up to 1.0.19. Impacted is an unknown function of the component Forgot-Password Endpoint. Such manipulation leads to open redirect.

This vulnerability is listed as CVE-2026-86196. The attack may be performed from remote. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More