Medium severity5.4NVD Advisory· Published Nov 19, 2021· Updated Jun 17, 2026
CVE-2021-3920
CVE-2021-3920
Description
grav-plugin-admin is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:getgrav:grav-plugin-admin:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:getgrav:grav-plugin-admin:*:*:*:*:*:*:*:*range: <1.10.25
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2- github.com/getgrav/grav-plugin-admin/commit/6463135bf046d8131189c163158cd5db8f7a9675nvdPatchThird Party Advisory
- huntr.dev/bounties/ab564760-90c6-4e1d-80c2-852f45034cd1nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.