Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in the Voyager package through 1.2.7 for Laravel. An attacker with admin privileges and Compass access can read or delete arbitrary files, such as the .env file. NOTE: a software maintainer has suggested a solution in which Compass is switched off in a production environment.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Voyager package for Laravel 安全漏洞
Vulnerability Description
Voyager package for Laravel是一款用于Laravel框架的、提供管理控制功能的软件包。 Voyager package for Laravel 1.2.7及之前版本中存在安全漏洞。攻击者可利用该漏洞读取或删除任意文件。
CVSS Information
N/A
Vulnerability Type
N/A