CVE-2025-27515
05.03.2025, 19:15
Laravel is a web application framework. When using wildcard validation to validate a given file or image field (`files.*`), a user-crafted malicious request could potentially bypass the validation rules. This vulnerability is fixed in 11.44.1 and 12.1.1.Enginsight
Vendor | Product | Version |
---|---|---|
laravel | framework | 𝑥 < 11.44.1 |
laravel | framework | 12.0.0 ≤ 𝑥 < 12.1.1 |
𝑥
= Vulnerable software versions

Debian Releases