{"api_version":"v1","generated_at":"2026-10-08T03:30:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-getgrav-grav-plugin-admin-ef276201a11b","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"grav-plugin-admin","next_cursor":null,"observations":[{"affected":"< 1.10.49.5","affected_versions_present":true,"cve_id":"CVE-2026-44737","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44737","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-11T18:35:37.711Z","patch_url":"","primary_source":"","published":"2026-05-11T15:52:04.365Z"},{"affected":"< 1.10.11","affected_versions_present":true,"cve_id":"CVE-2021-29439","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-29439","fixed":"1.10.11.","last_modified":"2024-08-03T22:02:51.967Z","patch_url":"https://github.com/getgrav/grav-plugin-admin/security/advisories/GHSA-wg37-cf5x-55hq","primary_source":"","published":"2021-04-13T19:45:15.000Z"},{"affected":"<= 1.10.7","affected_versions_present":true,"cve_id":"CVE-2021-21425","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-21425","fixed":"1.10.8.","last_modified":"2024-08-03T18:09:16.154Z","patch_url":"https://pentest.blog/unexpected-journey-7-gravcms-unauthenticated-arbitrary-yaml-write-update-leads-to-code-execution/","primary_source":"","published":"2021-04-07T18:20:13.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"getgrav"}}
