All vulnerabilities

CVE-2026-55890

Packagist · getgrav/grav

Summary

Grav: Stored CSS injection via Markdown image ?style=… reaches MediaObjectTrait::style() — incomplete patch of GHSA-r7fx-8g49-7hhr

References