CVE-2021-3799: Improper Restriction of Rendered UI Layers or Frames in getgrav/grav-plugin-admin
Published Sep 27, 2021
·Updated
grav-plugin-admin is vulnerable to Improper Restriction of Rendered UI Layers or Frames
Affected Software
1 affected component
getgrav grav-plugin-admin<1.10.20
Event History
Sep 27, 2021
CVE Published
via MITRE·12:25 PM
Data Sourced
via MITRE·12:25 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-3799.
2
What is the severity of CVE-2021-3799?
The severity of CVE-2021-3799 is medium with a severity value of 5.4.
3
Which software is affected by CVE-2021-3799?
grav-plugin-admin version up to (but excluding) 1.10.20 is affected by CVE-2021-3799.
4
How can I fix CVE-2021-3799?
To fix CVE-2021-3799, users should update to a version newer than 1.10.20 of grav-plugin-admin.
5
Where can I find more information about CVE-2021-3799?
More information about CVE-2021-3799 can be found at the following references: [Github](https://github.com/getgrav/grav-plugin-admin/commit/853abfbbd3c14a0a601c941dcfaa3858b6283b69) and [Huntr](https://huntr.dev/bounties/d73f24a8-302b-4f9f-abb8-54688abd9813).