Certain versions of Grav CMS be exploited using an unauthenticated arbitrary file write.
Note: scheduler is not enabled by default - will need to be set to replicate this exploit.
Last updated 2 years ago