CVE-2022-2073: Code Injection in getgrav/grav
Published Jun 29, 2022
·Updated
Code Injection in GitHub repository getgrav/grav prior to 1.7.34.
Affected Software
1 affected component
getgrav Grav<1.7.34
Remediation
Event History
Jun 29, 2022
CVE Published
via MITRE·06:20 PM
Data Sourced
via MITRE·06:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-2073?
CVE-2022-2073 is a code injection vulnerability in the GitHub repository getgrav/grav prior to version 1.7.34.
2
How severe is CVE-2022-2073?
CVE-2022-2073 is classified as critical with a severity value of 7.2.
3
What software is affected by CVE-2022-2073?
The software affected by CVE-2022-2073 is Getgrav Grav prior to version 1.7.34.
4
How can I fix CVE-2022-2073?
To fix CVE-2022-2073, update your Getgrav Grav installation to version 1.7.34 or later.
5
Where can I find more information about CVE-2022-2073?
You can find more information about CVE-2022-2073 at the following references: [GitHub Commit](https://github.com/getgrav/grav/commit/9d6a2dba09fd4e56f5cdfb9a399caea355bfeb83) and [Huntr.dev Bounty](https://huntr.dev/bounties/3ef640e6-9e25-4ecb-8ec1-64311d63fe66).