Vulnerabilities (CVE)

Filtered by vendor Backpackforlaravel Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-52306 1 Backpackforlaravel 1 Filemanager 2024-11-19 N/A 9.8 CRITICAL
FileManager provides a Backpack admin interface for files and folder. Prior to 3.0.9, deserialization of untrusted data from the mimes parameter could lead to remote code execution. This vulnerability is fixed in 3.0.9.
CVE-2018-20962 1 Backpackforlaravel 1 Backpack\\crud 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
The Backpack\CRUD Backpack component before 3.4.9 for Laravel allows XSS via the select field type.