Vulnerabilities (CVE)

Filtered by vendor Unisharp Subscribe
Filtered by product Laravel Filemanager
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40734 1 Unisharp 1 Laravel Filemanager 2024-02-28 N/A 6.5 MEDIUM
UniSharp laravel-filemanager (aka Laravel Filemanager) before 2.6.4 allows download?working_dir=%2F.. directory traversal to read arbitrary files, as exploited in the wild in June 2022. This is related to league/flysystem before 2.0.0.