alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due to improper path validation.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 03 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due to improper path validation. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-03T19:58:17.956Z
Reserved: 2025-11-18T00:00:00.000Z
Link: CVE-2025-65345
No data.
Status : Received
Published: 2025-12-03T20:16:26.440
Modified: 2025-12-03T20:16:26.440
Link: CVE-2025-65345
No data.
OpenCVE Enrichment
No data.