Softver
laravel
Aggregate across all detected versions
Ukupno hostova
0
distinct hosts
Versions Seen
0
Countries
0
Poznate CVE ranjivosti
11
known CVEs
Top države
No geolocated hosts.
Top ASN-ovi
No attributed hosts.
CVE podudaranja
| CVE | CVSS | Severity | Summary |
|---|---|---|---|
| CVE-2021-28254 | 9.8 | N/A | A deserialization vulnerability in the destruct() function of Laravel v8.5.9 allows attackers to execute arbitrary commands. |
| CVE-2021-3129 | 9.8 | N/A | Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitrary code because of insecure usage of fil... |
| CVE-2018-15133 | 8.1 | N/A | In Laravel Framework through 5.5.40 and 5.6.x through 5.6.29, remote code execution might occur as a result of an unserialize call on a potentially untrusted X-... |
| CVE-2017-16894 | 7.5 | N/A | In Laravel framework through 5.5.21, remote attackers can obtain sensitive information (such as externally usable passwords) via a direct request for the /.env... |
| CVE-2020-24940 | 7.5 | N/A | An issue was discovered in Laravel before 6.18.34 and 7.x before 7.23.2. Unvalidated values are saved to the database in some situations in which table names ar... |
| CVE-2020-24941 | 7.5 | N/A | An issue was discovered in Laravel before 6.18.35 and 7.x before 7.24.0. The $guarded property is mishandled in some situations involving requests with JSON col... |
| CVE-2021-21263 | 7.2 | N/A | Laravel is a web application framework. Versions of Laravel before 6.20.11, 7.30.2 and 8.22.1 contain a query binding exploitation. This same exploit applies to... |
| CVE-2017-9303 | 6.1 | N/A | Laravel 5.4.x before 5.4.22 does not properly constrain the host portion of a password-reset URL, which makes it easier for remote attackers to conduct phishing... |
| CVE-2017-14775 | 5.9 | N/A | Laravel before 5.5.10 mishandles the remember_me token verification process because DatabaseUserProvider does not have constant-time token comparison. |
| CVE-2022-2886 | 5.0 | N/A | A vulnerability, which was classified as critical, was found in Laravel 5.1. Affected is an unknown function. The manipulation leads to deserialization. It is p... |
| CVE-2022-2870 | 4.1 | N/A | A vulnerability was found in laravel 5.1 and classified as problematic. This issue affects some unknown processing. The manipulation leads to deserialization. T... |