CVE intelligence

CVE-2026-86195

grav-plugin-api versions before 1.0.20 contain a privilege escalation vulnerability in the InvitationsController where the stripSuperFlags()

Published 2026-09-05 · CVSS

high

NIST record