CVE-2026-65896 | getgrav up to 1.0.9 Slug Validation PagesController::move slug path traversal

SecurityVulns

A vulnerability labeled as problematic has been found in getgrav grav up to 1.0.9. Impacted is the function PagesController::move of the component Slug Validation. Such manipulation of the argument slug leads to path traversal.

This vulnerability is traded as CVE-2026-65896. The attack may be launched remotely. There is no exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More