PT-2026-81144 · Grav Cms · Grav Cms

·

CVE-2026-72701

·

Published

2026-08-25

·

Updated

2026-08-25

CVSS v4.0

6.3

Medium

VectorAV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Grav CMS versions prior to 2.0.16
Description An issue exists in the verifyNonce() function of the Utils class where non-constant-time string comparison is performed using the === operator instead of hash equals() for CSRF nonce validation. This allows attackers to recover valid nonce values byte-by-byte by measuring response timing differences across multiple requests, which reduces the effectiveness of Cross-Site Request Forgery (CSRF) protection.
Recommendations Update Grav CMS to version 2.0.16 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-72701
GHSA-38P6-H87P-R4CG

Affected Products

Grav Cms