Grav · Grav · CVE-2020-11529
**Name of the Vulnerable Software and Affected Versions**
Grav versions prior to 1.7
Grav versions 1.6.x (except 1.6.23 and later)
**Description**
The issue is related to an Open Redirect in the Common/Grav.php file. This problem is partially fixed in version 1.6.23 but still exists in other 1.6.x versions.
**Recommendations**
For Grav versions prior to 1.6.23, update to version 1.6.23 or later to partially mitigate the issue.
For Grav versions 1.6.x (except 1.6.23 and later), consider disabling the vulnerable `Common/Grav.php` file until a patch is available.
For Grav versions prior to 1.7, update to version 1.7 or later to fully resolve the issue.