PT-2024-40129 · Laravel · Laravel

Published

2024-05-15

·

Updated

2024-05-15

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: Laravel versions prior to 5.6.30
Description: A security issue has been identified, prompting an immediate upgrade recommendation for all users. The upgrade to version 5.6.30 includes a breaking change to cookie encryption and serialization logic.
Recommendations: For versions prior to 5.6.30, upgrade to version 5.6.30 to resolve the issue. It is essential to review the upgrade notes carefully to ensure a smooth transition, considering the changes to cookie encryption and serialization logic.

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

GHSA-6JVX-8CH9-J2JR

Affected Products

Laravel