GHSA-qf4h-jxxc-wvr9MediumCVSS 4.9
Grav versions before 2.0.13 fail to properly validate backup profile root paths, allowing...
🔗 CVE IDs covered (1)
📋 Description
Grav versions before 2.0.13 fail to properly validate backup profile root paths, allowing attackers to archive directories outside GRAV_ROOT when not in the hard-coded deny-list. Attackers with profile editor access can configure backup profiles with traversal paths to expose sensitive files from locations like /opt, /mnt, or /srv.
🔗 References (5)
- https://github.com/getgrav/grav/security/advisories/GHSA-fch7-cpv4-w7hg
- https://nvd.nist.gov/vuln/detail/CVE-2026-72820
- https://github.com/getgrav/grav/commit/ad9709f865b09b68798fb1ac375b484a8cc1d892
- https://www.vulncheck.com/advisories/grav-path-traversal-via-backup-profile-configuration
- https://github.com/advisories/GHSA-qf4h-jxxc-wvr9