2 Total CVEs
2 AI Analyzed
0 CISA KEV
1 Critical

Profile

0% ended up actively exploited 0 of 2 added to CISA KEV
50% rated critical (CVSS 9.0+) 1 critical, 1 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

2 CVEs in the last 12 months

Products

  • Grav1

1 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-2 of 2 CVEs
CVE-2026-56700
Analyzed
9.8
Grav Grav

Grav CMS is vulnerable to remote code execution via insecure PHP object deserialization, OS command injection, and server-side template injection.

2026-07-01
Full analysis →