Product
Grav CMS versions 2.0.14 through 2.0.24 contain a privilege escalation vulnerability allowing authenticated backend operators to bypass security guards and grant themselves super-admin privileges.