CVE-2025-66309 | grav up to 1.10.x Admin Plugin /admin/pages/[page cross site scripting (GHSA-65mj-f7p4-wggq)

SecurityVulns

A vulnerability classified as problematic was found in grav up to 1.10.x. This issue affects some unknown processing of the file /admin/pages/[page of the component Admin Plugin. The manipulation results in cross site scripting.

This vulnerability is reported as CVE-2025-66309. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More