CVE-2025-65346
04.12.2025, 15:15
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The unzip/extraction functionality improperly allows archive contents to be written to arbitrary locations on the filesystem due to insufficient validation of extraction paths.
| Vendor | Product | Version |
|---|---|---|
| alexusmai | laravel_file_manager | 𝑥 ≤ 3.3.1 |
𝑥
= Vulnerable software versions