← Back

Laravel File Manager

laravel_file_manager

Vendor: Alexusmai • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Alexusmai
1Laravel File Manager
Jun 17, 2026
Dec 4, 2025
N/A· v4
9.1 CRITICAL· v3
N/A· v2
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The unzip/extraction functionality improperly allows archive contents to be written to arbitrary locations on the filesystem due to ins...Show more
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The unzip/extraction functionality improperly allows archive contents to be written to arbitrary locations on the filesystem due to insufficient validation of extraction paths.Show less
1Alexusmai
1Laravel File Manager
Jun 17, 2026
Dec 3, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due t...Show more
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due to improper path validation.Show less
1Alexusmai
1Laravel File Manager
Jun 17, 2026
Nov 6, 2025
N/A· v4
8.1 HIGH· v3
N/A· v2
alexusmai laravel-file-manager 3.3.1 is vulnerable to Cross Site Scripting (XSS). The application permits user-controlled upload, create, and rename of files to HTML and SVG types and serves those files inline without ad...Show more
alexusmai laravel-file-manager 3.3.1 is vulnerable to Cross Site Scripting (XSS). The application permits user-controlled upload, create, and rename of files to HTML and SVG types and serves those files inline without adequate content-type validation or output sanitization.Show less