CVE-2024-21546
18.12.2024, 06:15
Versions of the package unisharp/laravel-filemanager before 2.9.1 are vulnerable to Remote Code Execution (RCE) through using a valid mimetype and inserting the . character after the php file extension. This allows the attacker to execute malicious code.
Awaiting analysis
This vulnerability is currently awaiting analysis.