Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-q5hg-wppq-r2cc | alexusmai laravel-file-manager is vulnerable to Directory Traversal via the unzip/extraction functionality |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 05 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Thu, 04 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Alexusmai
Alexusmai laravel-file-manager |
|
| Vendors & Products |
Alexusmai
Alexusmai laravel-file-manager |
Thu, 04 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The unzip/extraction functionality improperly allows archive contents to be written to arbitrary locations on the filesystem due to insufficient validation of extraction paths. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-05T19:55:59.180Z
Reserved: 2025-11-18T00:00:00.000Z
Link: CVE-2025-65346
Updated: 2025-12-05T19:55:50.072Z
Status : Awaiting Analysis
Published: 2025-12-04T15:15:59.377
Modified: 2025-12-05T20:15:58.060
Link: CVE-2025-65346
No data.
OpenCVE Enrichment
Updated: 2025-12-04T21:37:43Z
Github GHSA