GHSA-mw85-cjh9-8hp7HighCVSS 6.5
Grav CMS before 2.0.16 fails to filter system, site, and theme configuration arrays in sandboxed...
🔗 CVE IDs covered (1)
📋 Description
Grav CMS before 2.0.16 fails to filter system, site, and theme configuration arrays in sandboxed Twig renders, allowing content editors to read sensitive configuration values. Attackers with page-content edit access can access raw configuration arrays including secrets like cache credentials by using dot notation in Twig templates, bypassing the config_denied_paths restrictions.