CVE-2026-100672 | getgrav Grav up to 1.2.10 Admin /admin/comments/page isAdmin improper authentication

SecurityVulns

A vulnerability was found in getgrav Grav up to 1.2.10. It has been classified as problematic. This affects the function isAdmin of the file /admin/comments/page of the component Admin Handler. This manipulation causes improper authentication.

This vulnerability is tracked as CVE-2026-100672. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More