alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due to improper path validation.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Thu, 04 Dec 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Alexusmai
Alexusmai laravel-file-manager |
|
| Vendors & Products |
Alexusmai
Alexusmai laravel-file-manager |
Wed, 03 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archiving functionality allows an attacker to create archives containing files and directories outside the intended scope due to improper path validation. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-12-03T00:00:00.000Z
Updated: 2025-12-05T19:12:47.792Z
Reserved: 2025-11-18T00:00:00.000Z
Link: CVE-2025-65345
Updated: 2025-12-05T19:12:41.824Z
Status : Awaiting Analysis
Published: 2025-12-03T20:16:26.440
Modified: 2025-12-05T20:15:57.883
Link: CVE-2025-65345
No data.