PKSA-7hs4-c5nt-m1jh Security Advisory
-
[HIGH] Grav: FlexDirectory::dynamicDataField() executes arbitrary callables from blueprint data with no validation
PKSA-7hs4-c5nt-m1jh CVE-2026-65608 GHSA-c4wf-2xxc-68qm
Affected package: getgrav/grav
Affected version: >=1.7.0,<2.0.9
Reported by:
GitHub