CVE-2025-66307 - Grav Admin Plugin vulnerable to User Enumeration & Email Disclosure

CVE-2025-66307 - Grav Admin Plugin vulnerable to User Enumeration & Email Disclosure

CVE ID : CVE-2025-66307 Published : Dec. 1, 2025, 10:15 p.m. | 1 hour, 40 minutes ago Description : This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.11.0-beta.1, a user enumeration and email disclosure vulnerability exists in Grav. The

CVE Details

Published
Dec. 1, 2025

Source: Telegram CVE Monitor