Home

Description

Cross Site Scripting vulnerability in grav v.1.7.48, v.1.7.47 and v.1.7.46 allows an attacker to execute arbitrary code via the onerror attribute of the img element

PUBLISHED Reserved 2025-04-22 | Published 2025-07-25 | Updated 2025-07-25 | Assigner mitre

References

rapid-echo-f9c.notion.site/...8a078072bb30ffc9b9e7ab4a?pvs=4

tyojong.tistory.com/1

cve.org (CVE-2025-46198)

nvd.nist.gov (CVE-2025-46198)

Download JSON