CyberSecurityBoardThreat Intel · CVEs · Products

Tag: CVE-2026-80203

Critical CVEs

CVE-2026-80203 — Critical vulnerability brief

The getgrav/grav-plugin-api plugin before 1.0.18 does not enforce API-key scope in the requireNotSuperTarget() function in UsersController.php across seven sensitive user-management endpoints. The…

critical Critical CVE CVE-2026-80203
August 26, 2026