网安资讯详情 - SecLens 情报雷达

网安资讯,一网打尽。汇集权威漏洞通告与行业要闻,结合分组浏览、智能过滤、RSS订阅 和 Webhook 推送,多通道拓展您的安全情报视野。

CVE-2026-65007 | getgrav Api Plugin up to 1.0.7 API apiKeyGenerate/apiKeyRevoke improper authorization

来源: vuldb · 发布时间 2026-07-21 20:24 (UTC+08:00) · 抓取时间 2026-07-21 21:01 (UTC+08:00)

原文链接

摘要

A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> was found in <a href="https://vuldb.com/product/getgrav:api_plugin">getgrav Api Plugin up to 1.0.7</a>. Affected by this vulnerability is the function <code>apiKeyGenerate/apiKeyRevoke</code> of the component <em>API</em>. Executing a manipulation can lead to improper authorization. This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2026-65007">CVE-2026-65007</a>. The attack can be launched remotely. No exploit exists.

标签

扩展字段

{
  "raw_pub_date": "Tue, 21 Jul 2026 14:24:45 +0200"
}