Vulnerabilities > Laravel > Livewire

DATE CVE VULNERABILITY TITLE RISK
2024-10-08 CVE-2024-47823 Unrestricted Upload of File with Dangerous Type vulnerability in Laravel Livewire
Livewire is a full-stack framework for Laravel that allows for dynamic UI components without leaving PHP.
network
low complexity
laravel CWE-434
critical
9.8
2024-02-01 CVE-2024-22859 Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire
Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function.
network
low complexity
laravel CWE-352
8.8