CVE-2025-27515

Laravel is a web application framework. When using wildcard validation to validate a given file or image field (`files.*`), a user-crafted malicious request could potentially bypass the validation rules. This vulnerability is fixed in 11.44.1 and 12.1.1.
CVSS

No CVSS.

Configurations

No configuration.

History

05 Mar 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-05 19:15

Updated : 2025-03-05 19:15


NVD link : CVE-2025-27515

Mitre link : CVE-2025-27515

CVE.ORG link : CVE-2025-27515


JSON object : View

Products Affected

No product.

CWE
CWE-155

Improper Neutralization of Wildcards or Matching Symbols