CVE-2026-75829 | GetGrav up to 1.0.14 grav-plugin-api translate header/content special elements in template engine

SecurityVulns

A vulnerability, which was classified as critical, has been found in GetGrav Grav up to 1.0.14. Impacted is the function translate of the component grav-plugin-api. Performing a manipulation of the argument header/content results in improper neutralization of special elements used in a template engine.

This vulnerability is cataloged as CVE-2026-75829. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More