Laravel Reverb provides a real-time WebSocket communication backend for Laravel applications.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-23524 laravel/reverb is vulnerable to Deserialization of Untrusted Data in versions 0.0.0 - 1.7.0. | 0.0.0 - 1.7.0 | Critical |
AIKIDO-2024-10384 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. laravel/reverb is vulnerable to Denial of Service (DoS) in versions 1.0.0 - 1.0.0. | 1.0.0 - 1.0.0 | Medium |
AIKIDO-2024-10385 laravel/reverb is vulnerable to Weak Authentication in versions 1.0.0 - 1.3.1. | 1.0.0 - 1.3.1 | High |
| Dependency | Last Release | Score |
|---|---|---|
react/socket Version ^1.14 | — | — |
guzzlehttp/psr7 Version ^2.6 | — | — |
illuminate/http Version ^10.47|^11.0|^12.0|^13.0 | — | — |
laravel/prompts Version ^0.1.15|^0.2.0|^0.3.0 | — | — |
ratchet/rfc6455 Version ^0.4 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant