CVE-2021-3818: Reliance on Cookies without Validation and Integrity Checking in getgrav/grav
Published Sep 27, 2021
·Updated
grav is vulnerable to Reliance on Cookies without Validation and Integrity Checking
Affected Software
1 affected component
getgrav Grav<1.7.22
Remediation
Event History
Sep 27, 2021
CVE Published
via MITRE·12:25 PM
Data Sourced
via MITRE·12:25 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this grav vulnerability?
The vulnerability ID for this grav vulnerability is CVE-2021-3818.
2
What is the severity of CVE-2021-3818?
The severity of CVE-2021-3818 is medium with a severity value of 5.3.
3
How does CVE-2021-3818 affect the grav software?
CVE-2021-3818 affects the grav software by allowing reliance on cookies without validation and integrity checking.
4
Which version of the grav software is affected by CVE-2021-3818?
The version of the grav software affected by CVE-2021-3818 is up to exclusive version 1.7.22.
5
How can I fix CVE-2021-3818?
To fix CVE-2021-3818, update the grav software to a version higher than 1.7.22.