CVE security advisories and vulnerability history for laravel/framework by laravel.
Last updated
laravel laravel/framework has 11 published CVE records since 2017, of which 1 are in CISA's Known Exploited Vulnerabilities catalog and 3 have a known public exploit. The average CVSS base score across scored CVEs is 7.5.
This page aggregates every publicly disclosed vulnerability (CVE) affecting laravel laravel/framework, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
How the CVSS severity of laravel laravel/framework's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
1
One of laravel laravel/framework's CVEs is confirmed exploited in the wild.
Public exploits
3
3 of laravel laravel/framework's CVEs have a known public exploit available.
Browse every laravel laravel/framework version named in a CVE, then pick one to see only the CVEs that affect it.
The CWE weakness categories most often found in laravel laravel/framework CVEs. Follow any weakness for its full explanation.
How many laravel laravel/framework CVEs were published each year.
Browse vulnerabilities for other products by laravel.
Common questions about laravel laravel/framework vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new laravel laravel/framework vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.
11 CVEs
Added to CISA KEV 2024-01-16