Andy Miller
29 exploits
Active since Apr 2020
Grav CMS Cache Value FileCache.php doGet deserialization
CVSS 5.0
rhukster/dom-sanitizer: SVG <style> tag allows CSS injection via unfiltered url() and @import directives
CVSS 4.7
Grav < 1.6.31 - Open Redirect
CVSS 6.1
Grav < 1.7.42 - Remote Code Execution
CVSS 8.8
Grav <1.7.42 - SSTI
CVSS 7.2
DOMSanitizer <1.0.7 - XSS
CVSS 6.1
Grav < 1.7.45 - Path Traversal
CVSS 8.8
Grav < 1.7.43 - Authentication Bypass
CVSS 8.8
Grav < 1.7.45 - Code Injection
CVSS 8.8
Grav < 1.7.45 - Code Injection
CVSS 8.8
Grav < 1.7.45 - Code Injection
CVSS 8.8
Grav <1.7.46 - Info Disclosure
CVSS 8.5
Grav <1.8.0-beta.27 - Path Traversal
CVSS 8.8
Grav <1.8.0-beta.27 - Privilege Escalation
CVSS 8.8
Grav <1.8.0-beta.27 - RCE/Privilege Escalation
CVSS 8.8
Grav <1.8.0-beta.27 - Info Disclosure
CVSS 7.5
Grav <1.8.0-beta.27 - SSRF
CVSS 8.8
Grav <1.8.0-beta.27 - Info Disclosure
CVSS 8.5
Grav <1.8.0-beta.27 - Path Traversal
CVSS 6.8
Grav <1.8.0-beta.27 - DoS
CVSS 4.9
Grav <1.8.0-beta.27 - Info Disclosure
CVSS 6.2
Grav <1.8.0-beta.27 - DoS
CVSS 4.9
Grav <1.8.0-beta.27 - Info Disclosure
CVSS 4.3
Grav <1.11.0-beta.1 - Info Disclosure
CVSS 6.5
Grav <1.11.0-beta.1 - XSS
CVSS 5.4