Matias Griese
10 exploits
Active since Apr 2021
Grav Admin Plugin < 1.10.11 - Incorrect Authorization Leading to Arbitrary Plugin Installation
CVSS 7.2
Grav Admin Plugin < 1.10.20 - Clickjacking via Unrestricted UI Layer Rendering
CVSS 5.4
Grav < 1.7.22 - Reliance on Cookies without Validation and Integrity Checking
CVSS 5.3
Grav < 1.7.24 - Cross-Site Scripting
CVSS 5.4
grav-plugin-admin < 1.10.25 - Cross-Site Scripting
CVSS 5.4
Grav < 1.7.24 - Path Traversal
CVSS 7.5
Packagist getgrav/grav <1.7.28 - XSS
CVSS 5.4
Grav < 1.7.31 - Stored Cross-Site Scripting
CVSS 5.4
Grav < 1.7.33 - Stored Cross-Site Scripting
CVSS 5.4
Grav < 1.7.42 - Server-Side Template Injection via Twig map() and reduce() Functions
CVSS 8.8