漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Laravel Rest Api has a Search Validation Bypass
Vulnerability Description
Laravel Rest Api is an API generator. Prior to version 2.13.0, a validation bypass vulnerability was discovered where multiple validations defined for the same attribute could be silently overridden. Due to how the framework merged validation rules across multiple contexts (such as index, store, and update actions), malicious actors could exploit this behavior by crafting requests that bypass expected validation rules, potentially injecting unexpected or dangerous parameters into the application. This could lead to unauthorized data being accepted or processed by the API, depending on the context in which the validation was bypassed. This issue has been patched in version 2.13.0.
CVSS Information
N/A
Vulnerability Type
输入验证不恰当
Vulnerability Title
Laravel Rest Api 安全漏洞
Vulnerability Description
Laravel Rest Api是Lomkit开源的一个在几秒钟内生成Api的工具。 Laravel Rest Api 2.13.0之前版本存在安全漏洞,该漏洞源于验证绕过,可能导致注入意外或危险参数。
CVSS Information
N/A
Vulnerability Type
N/A