Laravel · Laravel-Admin · CVE-2019-17433
**Name of the Vulnerable Software and Affected Versions**
laravel-admin version 1.7.3
**Description**
The issue arises from mishandling on the "Operation log" screen, allowing for XSS via the Slug or Name on the Roles screen.
**Recommendations**
For version 1.7.3, update to a version that fixes the mishandling of user input on the "Operation log" screen to prevent XSS attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.