A file upload/editor intended for use with Laravel 5 to 10 and CKEditor / TinyMCE
98%
Total Score
95
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2024-21546 unisharp/laravel-filemanager is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 2.9.1. | 0.0.0 - 2.9.1 | Critical |
AIKIDO-2024-10395 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. unisharp/laravel-filemanager is vulnerable to Unrestricted Upload of File with Dangerous Type in versions 1.0.0 - 2.9.0. | 1.0.0 - 2.9.0 | Medium |
CVE-2022-40734 unisharp/laravel-filemanager is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 2.6.4. | 0.0.0 - 2.6.4 | Medium |
CVE-2021-23814 unisharp/laravel-filemanager is vulnerable to Unrestricted Upload of File with Dangerous Type in versions 0.0.0 - 2.6.2. | 0.0.0 - 2.6.2 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
composer/semver Version ^3.4 | — | — |
illuminate/http Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
league/flysystem Version >=2.0.0 | — | — |
illuminate/config Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
illuminate/support Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant