CVE-2026-86197: getgrav grav: Grav before 2.0.20 contains a cross-site scripting vulnerability in the Twig sandbox policy that allowlists addJs and… | Rapid7 Vulnerability Database