CVE-2026-85604 | Getgrav Grav up to 2.0.18 Twig Sort Filter GravExtension.php spl_autoload code injection
A vulnerability classified as critical was found in Getgrav Grav up to 2.0.18. Affected by this issue is the function spl_autoload of the file GravExtension.php of the component Twig Sort Filter. Such manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2026-85604. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.VulDB Recent EntriesRead More